CVE-1999-0026

SGI IRIX - Privilege Escalation via pset Command Buffer Overflow

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-1999-0026. PoCs published by Last Stage of Delirium.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in the pset utility on SGI Irix systems, allowing arbitrary code execution as root. It constructs a malicious buffer with NOP sleds, shellcode, and a crafted return address to overwrite the stack.

Description

root privileges via buffer overflow in pset command on SGI IRIX systems.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Last Stage of Delirium · clocalirix
https://www.exploit-db.com/exploits/19347

This exploit targets a buffer overflow vulnerability in the pset utility on SGI Irix systems, allowing arbitrary code execution as root. It constructs a malicious buffer with NOP sleds, shellcode, and a crafted return address to overwrite the stack.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: SGI Irix pset utility (versions 5.x and 6.x through 6.3)
No auth needed
Prerequisites: Access to a vulnerable SGI Irix system with the pset utility · Ability to execute the compiled exploit binary on the target system
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Third Party Advisory, VDB Entry x_refsource_misc
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0026

Scores

EPSS 0.0091
EPSS Percentile 55.1%

Details

Status published
Products (1)
sgi/irix
Published Jul 16, 1997
Tracked Since Feb 18, 2026