|
|
|
![]() |
Vulnerability Note VU#466239IBM AIX line printer daemon contains a buffer overflow in chk_fhost()OverviewThe Line Printer daemon (lpd) shipped with AIX systems contains a buffer overflow in chk_fhost() that potentially allow a malicious remote user to gain root privileges.I. DescriptionA buffer overflow exists in the chk_fhost() function of the line printer daemon (lpd) on AIX systems. An intruder could exploit this vulnerability to obtain root privileges or cause a denial of service (DoS). The intruder would need control of the DNS server to exploit this vulnerability.II. ImpactAn intruder could exploit this vulnerability to obtain root privileges, or cause a denial of service (DoS).III. SolutionIBM has released a VULNERABILITY SUMMARY. Please see the vendor statement for patches and instructions.Systems Affected
References
The CERT/CC wishes to thank IBM for their help in identifying and analyzing this vulnerability. This document was written by Jason Rafail.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||