hylafax

From: christer.obergat_private
Date: Sun Sep 23 2001 - 02:50:45 PDT

  • Next message: Robert van der Meulen: "Re: hylafax"

    There are some format strings vulnerbilities in the lastest hylafax package
    try faxrm -h %x 1 or faxalter -h %x -D 1 for "proof of concept".
    Both faxrm and faxalter are installed setuid uucp on FreeBSD (installed from
    port collection). uid uucp is not that exciting but with some luck you'll
    find uucp owned binaries running from cron with uid 0.
    
    -- 
    Sent through GMX FreeMail - http://www.gmx.net
    



    This archive was generated by hypermail 2b30 : Mon Sep 24 2001 - 09:39:47 PDT