Groff Pre-Processor Buffer Overflow Vulnerability
BID:3869
Info
Groff Pre-Processor Buffer Overflow Vulnerability
| Bugtraq ID: | 3869 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 14 2002 12:00AM |
| Updated: | Jan 14 2002 12:00AM |
| Credit: | Discovery of this vulnerability is credited to zen-parse. |
| Vulnerable: |
GNU groff 1.17 GNU groff 1.16 GNU groff 1.15 GNU groff 1.14 GNU groff 1.11 a GNU groff 1.11 GNU groff 1.10 |
| Not Vulnerable: | |
Discussion
Groff Pre-Processor Buffer Overflow Vulnerability
groff is a document formatting utility used on many Linux systems.
groff is normally invoked by LPRng (or another printer spooler) when a document needs to be formatted.
A vulnerability exists in the groff pre-processor which may allow an attacker to execute instructions with the privileges of the lp user. This is due to insufficient bounds checking.
This issue is remotely exploitable in the case that the line printer daemon (lpd) is running and may be accessed by remote hosts. Successful exploitation would allow an attacker to gain local access to a host running the vulnerable software, with the privileges of the lp user.
groff is a document formatting utility used on many Linux systems.
groff is normally invoked by LPRng (or another printer spooler) when a document needs to be formatted.
A vulnerability exists in the groff pre-processor which may allow an attacker to execute instructions with the privileges of the lp user. This is due to insufficient bounds checking.
This issue is remotely exploitable in the case that the line printer daemon (lpd) is running and may be accessed by remote hosts. Successful exploitation would allow an attacker to gain local access to a host running the vulnerable software, with the privileges of the lp user.