IRIX contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when a malicious user bypasses Network File System (NFS) access checks when the root,rw or access options in /etc/exports contain only wildcards (IP addresses or domain suffixes) and no explicit hostnames or netgroups. This flaw may lead to a loss of integrity.
Classification
Location:
Local Access Required
Attack Type:
Misconfiguration
Impact:
Loss of Integrity
Disclosure:
OSVDB Verified
Solution
Upgrade to version 6.5.22 or higher, as it has been reported to fix this vulnerability. In addition, Silicon Graphics, Inc. has released patches for some older versions.