VYPR
Unrated severityNVD Advisory· Published Oct 2, 1994· Updated Apr 16, 2026

CVE-1999-1022

CVE-1999-1022

Description

serial_ports administrative program in IRIX 4.x and 5.x trusts the user's PATH environmental variable to find and execute the ls program, which allows local users to gain root privileges via a Trojan horse ls program.

Affected products

3
  • Sgi/Irix3 versions
    cpe:2.3:o:sgi:irix:4:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:sgi:irix:4:*:*:*:*:*:*:*
    • cpe:2.3:o:sgi:irix:5.2:*:*:*:*:*:*:*
    • cpe:2.3:o:sgi:irix:5.3:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.