PT-2000-1730 · Sgi · Xfs+1
Publicado
2000-10-20
·
Atualizado
2008-09-05
·
CVE-2000-0798
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
IRIX versions 6.x
Description
The issue concerns a problem with the truncate function in the xfs file system, where it does not properly check for privileges. This allows local users to delete the contents of arbitrary files.
Recommendations
For IRIX version 6.x, consider restricting access to the truncate function in the xfs file system until a proper fix is available. As a temporary workaround, limit local user privileges to minimize the risk of exploitation.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Irix
Xfs