[9349] in bugtraq
Re: Linux /usr/bin/lpc overflow
daemon@ATHENA.MIT.EDU (Denis Bucher)
Thu Feb 4 15:16:14 1999
Date: Wed, 3 Feb 1999 22:51:15 +0100
Reply-To: Denis Bucher <dbucher@HORUS.CH>
From: Denis Bucher <dbucher@HORUS.CH>
To: BUGTRAQ@NETSPACE.ORG
xnec@INFERNO.TUSCULUM.EDU a =E9crit :
Hello !
I think there is a BIG ERROR in this mail :
> There is a local root comprimise hole in PLP Line Printer Control pro=
gram,
> version 4.0.3, which is SuSE 5.2's /usr/bin/lpc. Most other unices u=
se a
> different version of lpc (including SuSE 5.1).
Under an installation of SuSE 5.1, I found lpc 4.0.3 !
Therefore I think 5.1 is not safe !
Denis
--
Denis Bucher, / info@horus.ch Fax: +41-22-8000622 \ Internet S=
ervices
Horus Networks / http://www.horus.ch T=E9l. +41-22-8000625 \ Provide=
r