VYPR

Lprng

by Astart Technologies

CVEs (4)

  • CVE-2001-0787Oct 18, 2001
    risk 0.03cvss —epss 0.01

    LPRng in Red Hat Linux 7.0 and 7.1 does not properly drop memberships in supplemental groups when lowering privileges, which could allow a local user to elevate privileges.

  • CVE-2003-0136May 5, 2003
    risk 0.00cvss —epss 0.00

    psbanner in the LPRng package allows local users to overwrite arbitrary files via a symbolic link attack on the /tmp/before file.

  • CVE-2002-0378Jul 3, 2002
    risk 0.00cvss —epss 0.02

    The default configuration of LPRng print spooler in Red Hat Linux 7.0 through 7.3, Mandrake 8.1 and 8.2, and other operating systems, accepts print jobs from arbitrary remote hosts.

  • CVE-2000-0615Jul 19, 2000
    risk 0.00cvss —epss 0.00

    LPRng 3.6.x improperly installs lpd as setuid root, which can allow local users to append lpd trace and logging messages to files.