Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

SCO OpenServer reject Buffer Overflow Vulnerability

SCO OpenServer 5 ships with several suid 'bin' executables used in printer administration and related tasks.

This includes reject, a component used to suspend queueing of lp print tasks for a specific printer.

'reject' contains a confirmed locally exploitable buffer overflow condition present in the handling of command-line parameters.

If properly exploited, this can yield user 'bin' privileges to the attacker.







 

Privacy Statement
Copyright 2009, SecurityFocus