SGI IRIX SGI_IOPROBE allows root privileges

irix-sgiioprobe-gain-privileges (16413) The risk level is classified as HighHigh Risk

Description:

SGI IRIX could allow a local attacker to gain root privileges on the system. SGI_IOPROBE is an SGI system call used to determine the system configuration. A local attacker could read and write kernel memory using the SGI_IOPROBE system call to gain root privileges on the system.


Consequences:

Gain Privileges

Remedy:

Upgrade to the latest version of IRIX (6.5.25 or later), when available, as listed in SGI Security Advisory 20040601. See References.

— OR—

Apply the appropriate patch for your system, as listed in SGI Security Advisory 20040601. See References.

References:

  • CIAC Information Bulletin O-167: SGI - System Call SGI_IOPROBE Vulnerability.
  • SGI Security Advisory 20040601: syssgi system call vulnerability and other security fixes.
  • BID-10548: SGI IRIX SYSSGI() System Call Unprivileged User Kernel Memory Access Vulnerability
  • BID-10549: SGI IRIX Undisclosed Init Denial Of Service Vulnerability
  • CVE-2004-0135: The syssgi SGI_IOPROBE system call in IRIX 6.5.20 through 6.5.24 allows local users to gain privileges by reading and writing to kernel memory.
  • OSVDB ID: 7122: IRIX syssgi Privilege Escalation
  • SA11872: SGI IRIX Privilege Escalation and Denial of Service Vulnerabilities

Platforms Affected:

  • SGI IRIX 6.5.20f
  • SGI IRIX 6.5.20m
  • SGI IRIX 6.5.21f
  • SGI IRIX 6.5.21m
  • SGI IRIX 6.5.22
  • SGI IRIX 6.5.23
  • SGI IRIX 6.5.24

Reported:

Jun 14, 2004

The information within this database may change without notice. Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the author/distributor (IBM Internet Security Systems X-Force) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

For corrections or additions please email xforce@iss.net

Return to the main page