[6545] in bugtraq
Re: Nasty security hole in "lprm"
daemon@ATHENA.MIT.EDU (Raymond Dijkxhoorn)
Mon Apr 20 15:31:53 1998
Date: Mon, 20 Apr 1998 09:54:56 +0200
Reply-To: Raymond Dijkxhoorn <raymond@THRIJSWIJK.NL>
From: Raymond Dijkxhoorn <raymond@THRIJSWIJK.NL>
X-To: Chris Evans <chris@FERRET.LMH.OX.AC.UK>
To: BUGTRAQ@NETSPACE.ORG
In-Reply-To: <Pine.LNX.3.95.980418153204.6065A-100000@ferret.lmh.ox.ac.uk>
Hi Chris,
> I've found a local->root compromise in the lprm program, as shipped
> RedHat4.2 and RedHat5.0. Other systems untested.
That is why you can get a updated lprm from the redhat site... for both
4.2 and 5.0.
Bye,
Raymond Dijkxhoorn
Technische Hogeschool Rijswijk