HIGH · 7.2

CVE-2003-0144

Buffer overflow in the lprm command in the lprold lpr package on SuSE 7.1 through 7.3, OpenBSD 3.2 and earlier, and possibly other operating systems, allows local users to gain root privileges via lon...

Vulnerability Description

Buffer overflow in the lprm command in the lprold lpr package on SuSE 7.1 through 7.3, OpenBSD 3.2 and earlier, and possibly other operating systems, allows local users to gain root privileges via long command line arguments such as (1) request ID or (2) user name.

CVSS Score

7.2

HIGH

AV:L/AC:L/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
LproldLprold3.0.48
BsdLpr0.48
FreebsdFreebsd2.2
OpenbsdOpenbsd2.0

References

FAQ

What is CVE-2003-0144?

CVE-2003-0144 is a vulnerability with a CVSS score of 7.2 (HIGH). Buffer overflow in the lprm command in the lprold lpr package on SuSE 7.1 through 7.3, OpenBSD 3.2 and earlier, and possibly other operating systems, allows local users to gain root privileges via lon...

How severe is CVE-2003-0144?

CVE-2003-0144 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2003-0144?

Check the references section above for vendor advisories and patch information. Affected products include: Lprold Lprold, Bsd Lpr, Freebsd Freebsd, Openbsd Openbsd.