HP-UX Remote Line Printer Daemon Logic Flaw Vulnerability
BID:3561
Info
HP-UX Remote Line Printer Daemon Logic Flaw Vulnerability
| Bugtraq ID: | 3561 |
| Class: | Boundary Condition Error |
| CVE: |
CVE-2001-0817 CVE-2001-0817 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 20 2001 12:00AM |
| Updated: | Mar 19 2014 12:35AM |
| Credit: | This vulnerability was published in an Internet Security Systems Security Advisory on November 20th, 2001. |
| Vulnerable: |
HP HP-UX 11.11 HP HP-UX 11.0 HP HP-UX 10.20 HP HP-UX 10.10 HP HP-UX 10.0 1 |
| Not Vulnerable: | |
Discussion
HP-UX Remote Line Printer Daemon Logic Flaw Vulnerability
Rlpdaemon is the line printer daemon that ships with HP-UX. It is intended to provide print-sharing capabilities over a network. It is installed by default on HP-UX systems and runs as superuser. Rlpdaemon is based on the original BSD Unix line printer daemon and is similar to the lpd incorporated into other Unix variants.
The HP-UX line printer daemon is prone to an issue which may allow a remote attacker to gain local access to a host running the vulnerable package.
This vulnerability may allow a remote attacker to make a specially crafted print request which is able to write to arbitrary files or create directories on the host.
This may result in the remote attacker gaining local access, potentially with elevated privileges.
Rlpdaemon is the line printer daemon that ships with HP-UX. It is intended to provide print-sharing capabilities over a network. It is installed by default on HP-UX systems and runs as superuser. Rlpdaemon is based on the original BSD Unix line printer daemon and is similar to the lpd incorporated into other Unix variants.
The HP-UX line printer daemon is prone to an issue which may allow a remote attacker to gain local access to a host running the vulnerable package.
This vulnerability may allow a remote attacker to make a specially crafted print request which is able to write to arbitrary files or create directories on the host.
This may result in the remote attacker gaining local access, potentially with elevated privileges.
Exploit / POC
HP-UX Remote Line Printer Daemon Logic Flaw Vulnerability
The following exploit code is available:
The following exploit code is available:
Solution / Fix
HP-UX Remote Line Printer Daemon Logic Flaw Vulnerability
Solution:
The following patches are available:
HP HP-UX 10.0 1
HP HP-UX 10.10
HP HP-UX 10.20
HP HP-UX 11.0
HP HP-UX 11.11
Solution:
The following patches are available:
HP HP-UX 10.0 1
-
HP PHCO_25107
http://itrc.hp.com/
HP HP-UX 10.10
-
HP PHCO_25108
http://itrc.hp.com/
HP HP-UX 10.20
-
HP PHCO_25109
http://itrc.hp.com/
HP HP-UX 11.0
-
HP PHCO_25110
http://itrc.hp.com/ -
HP PHCO_27132
http://itrc.hp.com
HP HP-UX 11.11
-
HP PHCO_25111
http://itrc.hp.com/ -
HP PHCO_27020
http://itrc.hp.com
References
HP-UX Remote Line Printer Daemon Logic Flaw Vulnerability
References:
References: