Secunia Logo  
 
SGI Advanced Linux Environment Multiple Updates
Secunia Advisory: SA20782
Release Date: 2006-06-23
Popularity: 7,111 views

Critical:
Moderately critical
Impact: Security Bypass
Manipulation of data
Exposure of system information
Privilege escalation
DoS
Where: From remote
Solution Status: Vendor Patch

OS:SGI Advanced Linux Environment 3

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2003-1294
CVE-2004-2655
CVE-2006-0052
CVE-2006-0591
CVE-2006-1173
CVE-2006-2223
CVE-2006-2224
CVE-2006-2276
CVE-2006-2313
CVE-2006-2314


Description:
SGI has issued a patch for SGI Advanced Linux Environment. This fixes some vulnerabilities, a weakness, and two security issues, which can be exploited by malicious, local users to perform certain actions with escalated privileges, to bypass certain security restrictions, and to cause a DoS (Denial of Service), and by malicious people to bypass certain security restrictions, to disclose system information, to cause a DoS (Denial of Service), and to conduct SQL injection attacks.

For more information:
SA14211
SA15779
SA18419
SA19910
SA20116
SA20224
SA20231

Solution:
Apply patch 10314 for SGI ProPack 3 Service Pack 6.
http://support.sgi.com/

Original Advisory:
ftp://patches.sgi.com/support/free/security/advisories/20060602-01-U.asc

Other References:
SA14211:
http://secunia.com/advisories/14211/

SA15779:
http://secunia.com/advisories/15779/

SA18419:
http://secunia.com/advisories/18419/

SA19910:
http://secunia.com/advisories/19910/

SA20116:
http://secunia.com/advisories/20116/

SA20224:
http://secunia.com/advisories/20224/

SA20231:
http://secunia.com/advisories/20231/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. OpenSSL DSA / ECDSA "EVP_VerifyFinal()" Spoofing Vulnerability // 63 views
2. Joomla! "X_CMS_LIBRARY_PATH" Directory Traversal Vulnerability // 52 views
3. Symantec Mail Security for SMTP Response Handling Denial of Service // 31 views
4. SAP GUI TabOne ActiveX Control Caption List Buffer Overflow // 31 views
5. Red Hat update for openssl // 27 views
6. Zeroboard Multiple Vulnerabilities // 25 views
7. HP OpenView Network Node Manager Multiple Vulnerabilities // 23 views
8. vBulletin Personal Sticky Threads Add-on Security Bypass Vulnerability // 23 views
9. Red Hat update for dbus // 23 views
10. BlogHelper "common_db.inc" Information Disclosure Security Issue // 22 views