xfsmd for IRIX 6.5 through 6.5.16 allows remote attackers to execute arbitrary code via shell metacharacters that are not properly filtered from several calls to the popen() function, such as export_fs().
Name | Vendor | Start Version | End Version |
---|---|---|---|
Irix | Sgi | 6.5 (including) | 6.5 (including) |
Irix | Sgi | 6.5.1 (including) | 6.5.1 (including) |
Irix | Sgi | 6.5.2 (including) | 6.5.2 (including) |
Irix | Sgi | 6.5.3 (including) | 6.5.3 (including) |
Irix | Sgi | 6.5.4 (including) | 6.5.4 (including) |
Irix | Sgi | 6.5.5 (including) | 6.5.5 (including) |
Irix | Sgi | 6.5.6 (including) | 6.5.6 (including) |
Irix | Sgi | 6.5.7 (including) | 6.5.7 (including) |
Irix | Sgi | 6.5.8 (including) | 6.5.8 (including) |
Irix | Sgi | 6.5.9 (including) | 6.5.9 (including) |
Irix | Sgi | 6.5.10 (including) | 6.5.10 (including) |
Irix | Sgi | 6.5.11 (including) | 6.5.11 (including) |
Irix | Sgi | 6.5.12 (including) | 6.5.12 (including) |
Irix | Sgi | 6.5.13 (including) | 6.5.13 (including) |
Irix | Sgi | 6.5.14 (including) | 6.5.14 (including) |
Irix | Sgi | 6.5.15 (including) | 6.5.15 (including) |
Irix | Sgi | 6.5.16 (including) | 6.5.16 (including) |