vendor:
IRIX
by:
LAST STAGE OF DELIRIUM
7.5
CVSS
HIGH
Privilege Escalation
CWE
Product Name: IRIX
Affected Version From: IRIX 6.3
Affected Version To: IRIX 6.5.11
Patch Exists: NO
Related CWE:
CPE: o:sgi:irix:6.3
Platforms Tested: IRIX
2000
Privilege Escalation in netprint on IRIX
This code allows local lp users on IRIX 6.3 and above to conduct privilege escalation attacks. It creates a shared library that is loaded by the netprint executable, allowing the attacker to execute arbitrary code with root privileges.
Mitigation:
Apply patches provided by the vendor.