Skip to main content

Vendor archive

sgi CVEs

Beta · best-effort

182 CVEs tagged to vendor sgi35 Critical, 53 High, 69 Medium, 25 Low, 0 Unrated.

CVE-2012-2150

Published Aug 25, 2015

xfs_metadump in xfsprogs before 3.2.4 does not properly obfuscate file data, which allows remote attackers to obtain sensitive information by reading a generated image.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-5530

Published Nov 29, 2012

The (1) pcmd and (2) pmlogger init scripts in Performance Co-Pilot (PCP) before 3.6.10 allow local users to overwrite arbitrary files via a symlink attack on a /var/tmp/##### temp…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2012-3421

Published Aug 27, 2012

The pduread function in pdu.c in libpcp in Performance Co-Pilot (PCP) before 3.6.5 does not properly time out connections, which allows remote attackers to cause a denial of servi…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3420

Published Aug 27, 2012

Multiple memory leaks in Performance Co-Pilot (PCP) before 3.6.5 allow remote attackers to cause a denial of service (memory consumption or daemon crash) via a large number of PDU…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3419

Published Aug 27, 2012

Performance Co-Pilot (PCP) before 3.6.5 exports some of the /proc file system, which allows attackers to obtain sensitive information such as proc/pid/maps and command line argume…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-3418

Published Aug 27, 2012

libpcp in Performance Co-Pilot (PCP) before 3.6.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a PDU with the numcreds field va…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-2594

Published Jul 2, 2010

Multiple cross-site request forgery (CSRF) vulnerabilities in the web management interface in InterSect Alliance Snare Agent 3.2.3 and earlier on Solaris, Snare Agent 3.1.7 and ea…

CVSS 6.8 · Medium

CVE-2007-4938

Published Sep 18, 2007

Heap-based buffer overflow in libmpdemux/aviheader.c in MPlayer 1.0rc1 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arb…

CVSS 7.6 · High

CVE-2006-1167

Published Feb 6, 2007

SGI ProPack 3 SP6 kernel displays the frame buffer contents of the last session after a reboot, which might allow local users to obtain sensitive information.

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2925

Published Oct 12, 2005

runpriv in SGI IRIX allows local users to bypass intended restrictions and execute arbitrary commands via shell metacharacters in a command line for a privileged binary in /usr/sy…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2005-0138

Published Sep 21, 2005

rpc.mountd in SGI IRIX 6.5.25, 6.5.26, and 6.5.27 does not correctly allow access to anonymous clients that connect from a system whose hostname can not be determined. NOTE: whil…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-0139

Published Sep 21, 2005

Unknown vulnerability in rpc.mountd in SGI IRIX 6.5.25, 6.5.26, and 6.5.27 does not sufficiently restrict access rights for read-mostly exports, which allows attackers to conduct…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-1859

Published Jul 12, 2005

Unknown vulnerability in arshell in the Array Service (arrayd) for SGI ProPack 3 with SP 5 and 6, and SGI ProPack 4, allows local users to execute arbitrary shells as root on othe…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2005-0464

Published May 2, 2005

gr_osview in SGI IRIX 6.5.22, and possibly other 6.5 versions, does not drop privileges when opening description files while in debug mode, which allows local users to read a line…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0465

Published May 2, 2005

gr_osview in SGI IRIX does not drop privileges before opening files, which allows local users to overwrite arbitrary files via the -s option.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort
Showing 1-25 of 182 CVEsPage 1 of 8