First published: Thu Oct 18 2001(Updated: )
LPRng in Red Hat Linux 7.0 and 7.1 does not properly drop memberships in supplemental groups when lowering privileges, which could allow a local user to elevate privileges.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Red Hat Linux | =7.0 | |
Red Hat Linux | =7.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2001-0787 has a medium severity level due to the potential for local users to elevate their privileges.
To fix CVE-2001-0787, users should upgrade to a patched version of LPRng provided by Red Hat for the affected Linux versions.
CVE-2001-0787 affects users running Red Hat Linux versions 7.0 and 7.1 with the LPRng printing system.
If exploited, CVE-2001-0787 allows a local user to gain elevated privileges on the system.
CVE-2001-0787 is a local vulnerability, which means it can only be exploited by users who already have access to the system.