|
|
|
|
SGI Advanced Linux Environment Multiple Updates
|
|
Secunia Advisory:
|
SA15277
|
|
|
Release Date:
|
2005-05-09
|
|
Popularity:
|
14,158 views
|
|
|
Critical:
|
 Highly critical
|
|
Impact:
|
Unknown Security Bypass Cross Site Scripting Spoofing Manipulation of data Exposure of system information Exposure of sensitive information Privilege escalation DoS System access
|
|
Where:
|
From remote
|
|
Solution Status:
|
Vendor Patch
|
|
| OS: | SGI Advanced Linux Environment 3
|
|
|
Subscribe:
|
Instant alerts on relevant vulnerabilities
|
| | CVE reference: | CVE-2004-1156 CVE-2004-1392 CVE-2004-1772 CVE-2004-1773 CVE-2005-0142 CVE-2005-0143 CVE-2005-0146 CVE-2005-0231 CVE-2005-0232 CVE-2005-0233 CVE-2005-0401 CVE-2005-0524 CVE-2005-0525 CVE-2005-0527 CVE-2005-0578 CVE-2005-0584 CVE-2005-0585 CVE-2005-0586 CVE-2005-0588 CVE-2005-0590 CVE-2005-0591 CVE-2005-0593 CVE-2005-0638 CVE-2005-0753 CVE-2005-0941 CVE-2005-0989 CVE-2005-0990 CVE-2005-1042 CVE-2005-1043 CVE-2005-1153 CVE-2005-1154 CVE-2005-1155 CVE-2005-1156 CVE-2005-1157 CVE-2005-1159 CVE-2005-1160
|
|
Description: SGI has issued a patch for SGI Advanced Linux Environment. This fixes multiple vulnerabilities, which can be exploited by malicious, local users to gain knowledge of sensitive information and conduct certain actions on a vulnerable system with escalated privileges, and by malicious people to cause a DoS (Denial of Service), conduct spoofing and cross-site scripting attacks, disclose sensitive and system information, bypass certain security restrictions, trick users into downloading malicious files, and compromise a vulnerable system.
For more information:
SA12956
SA13023
SA13129
SA13258
SA13599
SA14017
SA14160
SA14462
SA14163
SA14407
SA14551
SA14684
SA14792
SA14821
SA14912
SA14976
SA14992
Solution: Apply patch 10168 for SGI ProPack 3 Service Pack 5.
http://support.sgi.com/
Original Advisory: ftp://patches.sgi.com/support/free/security/advisories/20050501-01-U.asc
Other References: SA12956:
http://secunia.com/advisories/12956/
SA13023:
http://secunia.com/advisories/13023/
SA13129:
http://secunia.com/advisories/13129/
SA13258:
http://secunia.com/advisories/13258/
SA13599:
http://secunia.com/advisories/13599/
SA14017:
http://secunia.com/advisories/14017/
SA14160:
http://secunia.com/advisories/14160/
SA14462:
http://secunia.com/advisories/14462/
SA14163:
http://secunia.com/advisories/14163/
SA14407:
http://secunia.com/advisories/14407/
SA14551:
http://secunia.com/advisories/14551/
SA14684:
http://secunia.com/advisories/14684/
SA14792:
http://secunia.com/advisories/14792/
SA14821:
http://secunia.com/advisories/14821/
SA14912:
http://secunia.com/advisories/14912/
SA14976:
http://secunia.com/advisories/14976/
SA14992:
http://secunia.com/advisories/14992/
|
|
|
Track this Secunia Advisory
|
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.
Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.
|
|
|
About this Secunia Advisory
|
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.
Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
|
|
|
10th Oct, 2008
|
New advisories:
|
15 |
|
New vulnerabilities:
|
83 |
|
Updated advisories:
|
41 |
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Solutions | More...
|
|
|
|
Send Feedback to Secunia
|
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.
|
|
|
|
|
|
|