Exploitation Summary
EIP tracks 1 public exploit for CVE-2000-0013. PoCs published by Loneguard.
AI-analyzed exploit summary This exploit leverages a command injection vulnerability in SGI Irix's 'soundplayer' application, which can be triggered via 'midikeys' (a setuid binary). The PoC compiles a C program to spawn a setuid shell, then guides the user to exploit the vulnerability by saving a file with a malicious filename.
Description
IRIX soundplayer program allows local users to gain privileges by including shell metacharacters in a .wav file, which is executed via the midikeys program.
Exploits (1)
This exploit leverages a command injection vulnerability in SGI Irix's 'soundplayer' application, which can be triggered via 'midikeys' (a setuid binary). The PoC compiles a C program to spawn a setuid shell, then guides the user to exploit the vulnerability by saving a file with a malicious filename.