[9349] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Linux /usr/bin/lpc overflow

daemon@ATHENA.MIT.EDU (Denis Bucher)
Thu Feb 4 15:16:14 1999

Date: 	Wed, 3 Feb 1999 22:51:15 +0100
Reply-To: Denis Bucher <dbucher@HORUS.CH>
From: Denis Bucher <dbucher@HORUS.CH>
To: BUGTRAQ@NETSPACE.ORG

xnec@INFERNO.TUSCULUM.EDU a =E9crit :

Hello !

I think there is a BIG ERROR in this mail :

> There is a local root comprimise hole in PLP Line Printer Control pro=
gram,
> version 4.0.3, which is SuSE 5.2's /usr/bin/lpc.  Most other unices u=
se a
> different version of lpc (including SuSE 5.1).

Under an installation of SuSE 5.1, I found lpc 4.0.3 !
Therefore I think 5.1 is not safe !

Denis

--

Denis Bucher,   / info@horus.ch       Fax: +41-22-8000622 \  Internet S=
ervices
Horus Networks /  http://www.horus.ch T=E9l. +41-22-8000625  \  Provide=
r

home help back first fref pref prev next nref lref last post