|
|
Vulnerability Assessment & Network Security Forums |
|||||||||
|
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Debian Local Security Checks >> [DSA285] DSA-285-1 lprng Vulnerability Assessment Details
|
[DSA285] DSA-285-1 lprng |
||
|
DSA-285-1 lprng Detailed Explanation for this Vulnerability Assessment Karol Lewandowski discovered that psbanner, a printer filter that creates a PostScript format banner and is part of LPRng, insecurely creates a temporary file for debugging purpose when it is configured as filter. The program does not check whether this file already exists or is linked to another place, psbanner writes its current environment and called arguments to the file unconditionally with the user id daemon. For the stable distribution (woody) this problem has been fixed in version 3.8.10-1.2. The old stable distribution (potato) is not affected by this problem. For the unstable distribution (sid) this problem has been fixed in version 3.8.20-4. We recommend that you upgrade your lprng package. Solution : http://www.debian.org/security/2003/dsa-285 Network Security Threat Level: High Networks Security ID: 7334 Vulnerability Assessment Copyright: This script is (C) 2005 Michel Arboi |
||
|
Racks, Mounts & Patch Panels |
|
||
|
No Discussions have been posted on this vulnerability. |