Buffer overflow in the lprm command in the lprold lpr package on SuSE 7.1 through 7.3, OpenBSD 3.2 and earlier, and possibly other operating systems, allows local users to gain root privileges via long command line arguments such as (1) request ID or (2) user name.
2003-03-31T05:00:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 7.2 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | lprold | lprold | 3.0.48 | Yes |
Operating System | bsd | lpr | 0.48 | Yes |
Operating System | bsd | lpr | 2000-05-07 | Yes |
Operating System | freebsd | freebsd | 2.2 | Yes |
Operating System | freebsd | freebsd | 2.2.2 | Yes |
Operating System | freebsd | freebsd | 2.2.3 | Yes |
Operating System | freebsd | freebsd | 2.2.4 | Yes |
Operating System | freebsd | freebsd | 2.2.5 | Yes |
Operating System | freebsd | freebsd | 2.2.6 | Yes |
Operating System | openbsd | openbsd | 2.0 | Yes |
Operating System | openbsd | openbsd | 2.1 | Yes |
Operating System | openbsd | openbsd | 2.2 | Yes |
Operating System | openbsd | openbsd | 2.3 | Yes |
Operating System | openbsd | openbsd | 2.4 | Yes |
Operating System | openbsd | openbsd | 2.5 | Yes |
Operating System | openbsd | openbsd | 2.6 | Yes |
Operating System | openbsd | openbsd | 2.7 | Yes |
Operating System | openbsd | openbsd | 2.8 | Yes |
Operating System | openbsd | openbsd | 2.9 | Yes |
Operating System | openbsd | openbsd | 3.0 | Yes |
Operating System | openbsd | openbsd | 3.1 | Yes |
Operating System | openbsd | openbsd | 3.2 | Yes |