PT-1994-1022 · Silicon Graphics · Irix+1
Published
1994-08-09
·
Updated
2017-10-10
·
CVE-1999-1494
CVSS v2.0
2.1
Low
| Vector | AV:L/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Silicon Graphics IRIX versions 5.1 through 6.0
Description
The issue allows local attackers to read arbitrary files. This is achieved via the -text argument in the colorview application.
Recommendations
For Silicon Graphics IRIX versions 5.1 through 6.0, consider restricting access to the colorview application until a fix is available. As a temporary workaround, avoid using the -text argument in the colorview application to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Irix
Colorview