Phase:Vulnerability in xfsdump in SGI IRIX may allow local users to obtain root privileges via the bck.log log file, possibly via a symlink attack.
ReferencesBUGTRAQ:Wednesday, May 07, 1997 Irix: misc | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=87602167420921&w=2 | MISC:http://www.insecure.org/sploits/irix.xfsdump.html | BID:472 | URL:http://www.securityfocus.com/bid/472
Votes:Proposed (Wednesday, September 12, 2001)
Comments: ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(1) Foat
F7: Frech> XF:irix-xfsdump-symlink(7193)