Irix contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The nsd utility does not properly check the permissions and ownership of its dump file (/var/tmp/nsd.dump) prior to writing to it. If an attacker creates a symlink to an arbitrary file before nsd writes to the dump file, they can send a USR1 signal to the nsd process and force the dump to occur, overwriting the arbitrary file. This flaw may lead to a loss of integrity and/or availability.
Upgrade to Irix version 6.5.11 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.