Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA285] DSA-285-1 lprng


Vulnerability Assessment Details

[DSA285] DSA-285-1 lprng

Vulnerability Assessment Summary
DSA-285-1 lprng

Detailed Explanation for this Vulnerability Assessment

Karol Lewandowski discovered that psbanner, a printer filter that
creates a PostScript format banner and is part of LPRng, insecurely
creates a temporary file for debugging purpose when it is configured
as filter. The program does not check whether this file already
exists or is linked to another place, psbanner writes its current environment
and called arguments to the file unconditionally with the user id
daemon.
For the stable distribution (woody) this problem has been fixed in
version 3.8.10-1.2.
The old stable distribution (potato) is not affected by this problem.
For the unstable distribution (sid) this problem has been fixed in
version 3.8.20-4.
We recommend that you upgrade your lprng package.


Solution : http://www.debian.org/security/2003/dsa-285
Network Security Threat Level: High

Networks Security ID: 7334

Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi

Cables, Connectors

Dell R620 Dual E5-2670 v2 10C 2.5GHz 32GB 2x 146GB 15K SAS Rails 10 Bay
$1368.0
Dell R620 Dual E5-2670 v2 10C 2.5GHz 32GB 2x 146GB 15K SAS Rails 10 Bay pictureDell PowerEdge R730 Dual E5-2603 v4 6-Core 1.7GHz 128GB iDRAC 2.5in Rails RPS
$2800.0
Dell PowerEdge R730 Dual E5-2603 v4 6-Core 1.7GHz 128GB iDRAC 2.5in Rails RPS pictureDELL POWEREDGE R630 10 BAY TWO E5-2623V3 3GHZ 128GB 10 X 300GB 15K SAS H730
$5269.0
DELL POWEREDGE R630 10 BAY TWO E5-2623V3 3GHZ 128GB 10 X 300GB 15K SAS H730 pictureDELL POWEREDGE R720 8B 2.5 SERVER TWO E5-2695V2 2.40GHZ 128GB 4 X 73GB 10K SAS H
$2999.0
DELL POWEREDGE R720 8B 2.5 SERVER TWO E5-2695V2 2.40GHZ 128GB 4 X 73GB 10K SAS H picture


Discussions

No Discussions have been posted on this vulnerability.