SECURITY: lpr-0.31 now available

From: Erik Troan (ewtat_private)
Date: Thu Apr 23 1998 - 08:41:14 PDT

  • Next message: Lloyd Vancil: "More Microsoft debri"

    More buffer overflows have been found in lpr 0.30 as released on
    Saturday. As these flaws may allow users to gain root access to the
    local system, Red Hat Software recommends that all users upgrade to
    lpr 0.31 immediately.
    
    Thanks to Niall Smart for finding this problem.
    
    Red Hat 5.0
    -------------
    
    i386:
    rpm -Uvh ftp://ftp.redhat.com/updates/5.0/i386/lpr-0.31-1.i386.rpm
    
    alpha:
    rpm -Uvh ftp://ftp.redhat.com/updates/5.0/alpha/lpr-0.31-1.alpha.rpm
    
    Red Hat 4.2
    -------------
    
    i386:
    rpm -Uvh ftp://ftp.redhat.com/updates/4.2/i386/lpr-0.31-0.i386.rpm
    
    alpha:
    rpm -Uvh ftp://ftp.redhat.com/updates/4.2/alpha/lpr-0.31-0.alpha.rpm
    
    SPARC:
    rpm -Uvh ftp://ftp.redhat.com/updates/4.2/sparc/lpr-0.31-0.sparc.rpm
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 13:50:57 PDT