PT-2002-1066 · Red Hat+1 · Red Hat+1

Publicado

2002-06-15

·

Atualizado

2008-09-10

·

CVE-2002-0378

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions LPRng versions 3.7.4 through 3.8.9 Red Hat Linux versions 7.0 through 7.3
Description The issue affects the LPRng print spooler, which in its default configuration, accepts print jobs from arbitrary remote hosts. This can lead to a breach of confidentiality, integrity, and availability of protected information. The exploitation of these vulnerabilities can be carried out remotely.
Recommendations For LPRng versions 3.7.4 through 3.8.9, consider restricting access to the print spooler to prevent remote exploitation until a patch is available. For Red Hat Linux versions 7.0 through 7.3, update the configuration of the LPRng print spooler to only accept print jobs from trusted hosts. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

BDU:2015-08158
BDU:2015-08159
CVE-2002-0378

Produtos afetados

Lprng
Red Hat