Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.50787
Category:Mandrake Local Security Checks
Title:Mandrake Security Advisory MDKSA-2002:012 (groff)
Summary:NOSUMMARY
Description:Description:

The remote host is missing an update to groff
announced via advisory MDKSA-2002:012.

zen-parse discovered an exploitable buffer overflow in groff's
preprocessor. If groff is invoked using the LPRng printing system, an
attacker can gain rights as the lp user. Likewise, this may be
remotely exploitable if lpd is running and remotely accessible and the
attacker knows the name of the printer and it's spool file.

Affected versions: 7.2, 8.0, 8.1, Single Network Firewall 7.2

Solution:
To upgrade automatically use MandrakeUpdate or urpmi. The verification
of md5 checksums and GPG signatures is performed automatically for you.

https://secure1.securityspace.com/smysecure/catid.html?in=MDKSA-2002:012
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2002-0003

Risk factor : High

CVSS Score:
7.5

Cross-Ref: BugTraq ID: 3869
Common Vulnerability Exposure (CVE) ID: CVE-2002-0003
http://www.securityfocus.com/bid/3869
HPdes Security Advisory: HPSBTL0201-014
http://online.securityfocus.com/advisories/3793
http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-012.php
http://www.redhat.com/support/errata/RHSA-2002-004.html
XForce ISS Database: linux-groff-preprocessor-bo(7881)
https://exchange.xforce.ibmcloud.com/vulnerabilities/7881
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.