OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Bugtraq archives for 1st quarter (Jan-Mar) 1999: Re: Linux /usr/bin/lpc overflow

Re: Linux /usr/bin/lpc overflow

Denis Bucher (dbucherHORUS.CH)
Wed, 3 Feb 1999 22:51:15 +0100

xnecINFERNO.TUSCULUM.EDU a écrit :

Hello !

I think there is a BIG ERROR in this mail :

> There is a local root comprimise hole in PLP Line Printer Control program,
> version 4.0.3, which is SuSE 5.2's /usr/bin/lpc.  Most other unices use a
> different version of lpc (including SuSE 5.1).

Under an installation of SuSE 5.1, I found lpc 4.0.3 !
Therefore I think 5.1 is not safe !

Denis

--

Denis Bucher,   / infohorus.ch       Fax: +41-22-8000622 \  Internet Services
Horus Networks /  http://www.horus.ch Tél. +41-22-8000625  \  Provider