First published: Wed Oct 18 2000(Updated: )
LPPlus creates the lpdprocess file with world-writeable permissions, which allows local users to kill arbitrary processes by specifying an alternate process ID and using the setuid dcclpdshut program to kill the process that was specified in the lpdprocess file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Plus Technologies Lpplus | =3.3 | |
Plus Technologies Lpplus | =3.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.