漏洞信息详情
LPPlus许可DoS漏洞
漏洞简介
LPPlus创建带有全域可写权限的lpdprocess文件。本地用户通过指明交替的进程ID且使用setuid dcclpdshut程序中断lpdprocess文件中指定的进程从而中断任意进程。
漏洞公告
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
参考网址
来源: XF 名称: lpplus-process-perms-dos 链接:http://xforce.iss.net/static/5200.php 来源: BID 名称: 1643 链接:http://www.securityfocus.com/bid/1643 来源: BUGTRAQ 名称: 20000906 Multiple Security Holes in LPPlus 链接:http://archives.neohapsis.com/archives/bugtraq/2000-08/0531.html
受影响实体
- Plus_technologies Lpplus:3.2.2<!--2000-1-1-->
- Plus_technologies Lpplus:3.3<!--2000-1-1-->
补丁
暂无
还没有评论,来说两句吧...