LPPlus creates the lpdprocess file with world-writeable permissions, which allows local users to kill arbitrary processes by specifying an alternate process ID and using the setuid dcclpdshut program to kill the process that was specified in the lpdprocess file.
References
Link | Resource |
---|---|
http://archives.neohapsis.com/archives/bugtraq/2000-08/0531.html | Vendor Advisory |
http://www.securityfocus.com/bid/1643 | Exploit Vendor Advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/5200 |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2000-11-14 05:00
Updated : 2024-02-28 10:24
NVD link : CVE-2000-0880
Mitre link : CVE-2000-0880
CVE.ORG link : CVE-2000-0880
JSON object : View
Products Affected
plus_technologies
- lpplus
CWE