PT-2000-1730 · Sgi · Xfs+1
Published
2000-10-20
·
Updated
2008-09-05
·
CVE-2000-0798
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
IRIX versions 6.x
Description
The issue concerns a problem with the truncate function in the xfs file system, where it does not properly check for privileges. This allows local users to delete the contents of arbitrary files.
Recommendations
For IRIX version 6.x, consider restricting access to the truncate function in the xfs file system until a proper fix is available. As a temporary workaround, limit local user privileges to minimize the risk of exploitation.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Irix
Xfs