Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

SCO OpenServer lpmove Buffer Overflow Vulnerability

SCO OpenServer 5 ships with several suid 'bin' executables used in printer administration and related tasks.

This includes lpmove, a component used to move queued lp print requests from one printer to another.

'lpmove' contains a confirmed locally exploitable buffer overflow condition present in the handling of command-line parameters.

If properly exploited, this can yield user 'bin' privileges to the attacker.







 

Privacy Statement
Copyright 2009, SecurityFocus