CVE-2005-0464
Last modified
CVE-2005-0464 is a vulnerability of currently unknown severity. gr_osview in SGI IRIX 6.5.22, and possibly other 6.5 versions, does not drop privileges when opening description files while in debug mode, which allows local users to read a line from arbitrary files via the -d and -D options, which prints the line as a formatting error.. EPSS estimates a 0.69% chance of exploitation in the next 30 days.
Description
gr_osview in SGI IRIX 6.5.22, and possibly other 6.5 versions, does not drop privileges when opening description files while in debug mode, which allows local users to read a line from arbitrary files via the -d and -D options, which prints the line as a formatting error.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Sgi | Irix | 6.5.22 |
References
- http://www.idefense.com/application/poi/display?id=226&type=vulnerabilitiesPatch, Vendor Advisory
- http://www.idefense.com/application/poi/display?id=226&type=vulnerabilitiesPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-0464?
How severe is CVE-2005-0464?
How do I fix CVE-2005-0464?
Are you affected by CVE-2005-0464?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
