PT-2002-1066 · Red Hat+1 · Red Hat+1

Published

2002-06-15

·

Updated

2008-09-10

·

CVE-2002-0378

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions LPRng versions 3.7.4 through 3.8.9 Red Hat Linux versions 7.0 through 7.3
Description The issue affects the LPRng print spooler, which in its default configuration, accepts print jobs from arbitrary remote hosts. This can lead to a breach of confidentiality, integrity, and availability of protected information. The exploitation of these vulnerabilities can be carried out remotely.
Recommendations For LPRng versions 3.7.4 through 3.8.9, consider restricting access to the print spooler to prevent remote exploitation until a patch is available. For Red Hat Linux versions 7.0 through 7.3, update the configuration of the LPRng print spooler to only accept print jobs from trusted hosts. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

BDU:2015-08158
BDU:2015-08159
CVE-2002-0378

Affected Products

Lprng
Red Hat