Description
rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable.
References (5)
Core 5
Core References
Various Sources x_refsource_misc
http://www.alw.nih.gov/Security/8lgm/8lgm-Advisory-01.html
Patch, Vendor Advisory vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/31
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://www.osvdb.org/8106
Third Party Advisory vdb-entry
x_refsource_xf
http://www.iss.net/security_center/static/7160.php
Patch, Third Party Advisory, US Government Resource third-party-advisory
x_refsource_cert
http://www.cert.org/advisories/CA-91.20.rdist.vulnerability
Scores
EPSS
0.0063
EPSS Percentile
70.6%
Details
Status
published
Products (15)
cray/unicos
6.0
cray/unicos
6.0e
cray/unicos
6.1
next/next
2.0
next/next
2.1
sgi/irix
3.3
sgi/irix
3.3.1
sgi/irix
3.3.2
sgi/irix
3.3.3
sgi/irix
4.0
... and 5 more
Published
Oct 22, 1991
Tracked Since
Feb 18, 2026