Vulnerabilities > CVE-2000-1208
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
Format string vulnerability in startprinting() function of printjob.c in BSD-based lpr lpd package may allow local users to gain privileges via an improper syslog call that uses format strings from the checkremote() call.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 | |
OS | 1 | |
OS | 3 | |
OS | 1 |
Nessus
NASL family | Mandriva Local Security Checks |
NASL id | MANDRAKE_MDKSA-2000-054.NASL |
description | There is a format string bug in lpr with its calls to the syslog facility. There are no known exploits at ths time, but it may be possible for a user to gain local root access. This new lpr fixes this problem. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 61844 |
published | 2012-09-06 |
reporter | This script is Copyright (C) 2012-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/61844 |
title | Mandrake Linux Security Advisory : lpr (MDKSA-2000:054) |
code |
|
Redhat
advisories |
|
References
- http://marc.info/?l=bugtraq&m=96994604300675&w=2
- http://marc.info/?l=bugtraq&m=96994604300675&w=2
- http://online.securityfocus.com/archive/1/137555
- http://online.securityfocus.com/archive/1/137555
- http://www.iss.net/security_center/static/5286.php
- http://www.iss.net/security_center/static/5286.php
- http://www.redhat.com/support/errata/RHSA-2000-066.html
- http://www.redhat.com/support/errata/RHSA-2000-066.html
- http://www.securityfocus.com/bid/1711
- http://www.securityfocus.com/bid/1711