CVE-2000-1220
N/A
N/A
Summary
The line printer daemon (lpd) in the lpr package in multiple Linux operating systems allows local users to gain root privileges by causing sendmail to execute with arbitrary command line arguments, as demonstrated using the -C option to specify a configuration file.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.debian.org/security/2000/20000109
- http://seclists.org/lists/bugtraq/2000/Jan/0116.html
- http://www.securityfocus.com/bid/927
- https://exchange.xforce.ibmcloud.com/vulnerabilities/3841
- ftp://patches.sgi.com/support/free/security/advisories/20021104-01-P
- http://www.l0pht.com/advisories/lpd_advisory
- http://www.kb.cert.org/vuls/id/39001
- http://www.redhat.com/support/errata/RHSA-2000-002.html
- http://www.atstake.com/research/advisories/2000/lpd_advisory.txt
References
- http://www.debian.org/security/2000/20000109
- http://seclists.org/lists/bugtraq/2000/Jan/0116.html
- http://www.securityfocus.com/bid/927
- https://exchange.xforce.ibmcloud.com/vulnerabilities/3841
- ftp://patches.sgi.com/support/free/security/advisories/20021104-01-P
- http://www.l0pht.com/advisories/lpd_advisory
- http://www.kb.cert.org/vuls/id/39001
- http://www.redhat.com/support/errata/RHSA-2000-002.html
- http://www.atstake.com/research/advisories/2000/lpd_advisory.txt
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.