New groff packages have been made available that fix an overflow in groff.
If the printing system running this is a security issue, it is recommended
to update to the new, fixed packages.
Groff is a document formatting system. The groff preprocessor contains an
exploitable buffer overflow. If groff can be invoked within the LPRng
printing system, an attacker can gain rights as the "lp" user.
Remote exploitation may be possible if lpd is running and is accessible
remotely, and the attacker knows the name of the printer and spoolfile.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has
assigned the name CAN-2002-0003 to this issue.
Thanks to zen-parse for bringing this bug to our attention.
| Red Hat Linux 7.0 |
|
| SRPMS: |
ftp://updates.redhat.com/7.0/en/os/SRPMS/groff-1.16-7.1.1.src.rpm
Missing file |
2d8f124e3501a67d3869b2adb0e4ae9b |
| |
| Alpha: |
ftp://updates.redhat.com/7.0/en/os/alpha/groff-1.16-7.1.1.alpha.rpm
Missing file |
99047829eb9ebd1d4db859f3b64b8a76 |
ftp://updates.redhat.com/7.0/en/os/alpha/groff-gxditview-1.16-7.1.1.alpha.rpm
Missing file |
3d4a15c5644c1bd2c24dae31f1095f4d |
ftp://updates.redhat.com/7.0/en/os/alpha/groff-perl-1.16-7.1.1.alpha.rpm
Missing file |
10e4f6583732fbf51bc23ab186c7b7bb |
| |
| IA-32: |
ftp://updates.redhat.com/7.0/en/os/i386/groff-1.16-7.1.1.i386.rpm
Missing file |
75beca33b7eeb77603c86e6219e0d26e |
ftp://updates.redhat.com/7.0/en/os/i386/groff-gxditview-1.16-7.1.1.i386.rpm
Missing file |
93740b2ae27732d73e6e81d369293a0b |
ftp://updates.redhat.com/7.0/en/os/i386/groff-perl-1.16-7.1.1.i386.rpm
Missing file |
2b36d02d479bed1ab7d58dd692dc0a51 |
| |
| Red Hat Linux 7.1 |
|
| SRPMS: |
ftp://updates.redhat.com/7.1/en/os/SRPMS/groff-1.17.2-7.0.2.src.rpm
Missing file |
1d4e9b5068fcf178ddacf032c0db523d |
| |
| Alpha: |
ftp://updates.redhat.com/7.1/en/os/alpha/groff-1.17.2-7.0.2.alpha.rpm
Missing file |
93cbf905335c1474ed9e632c0ec83738 |
ftp://updates.redhat.com/7.1/en/os/alpha/groff-gxditview-1.17.2-7.0.2.alpha.rpm
Missing file |
1d837785e127b4b9dc719b1f232816c6 |
ftp://updates.redhat.com/7.1/en/os/alpha/groff-perl-1.17.2-7.0.2.alpha.rpm
Missing file |
465db9810916d6a346b75534c8e2cdc1 |
| |
| IA-32: |
ftp://updates.redhat.com/7.1/en/os/i386/groff-1.17.2-7.0.2.i386.rpm
Missing file |
f3181dd6c32ffc9478721244b77c89af |
ftp://updates.redhat.com/7.1/en/os/i386/groff-gxditview-1.17.2-7.0.2.i386.rpm
Missing file |
70ea6d89f289177fa4291e319347b3de |
ftp://updates.redhat.com/7.1/en/os/i386/groff-perl-1.17.2-7.0.2.i386.rpm
Missing file |
d6d520d69decc1c2243daa8179e956d7 |
| |
| IA-64: |
ftp://updates.redhat.com/7.1/en/os/ia64/groff-1.17.2-7.0.2.ia64.rpm
Missing file |
4f08644532e54b8c3553b04148424e56 |
ftp://updates.redhat.com/7.1/en/os/ia64/groff-gxditview-1.17.2-7.0.2.ia64.rpm
Missing file |
c340eacc8bc4ad85894c200ef37cb715 |
ftp://updates.redhat.com/7.1/en/os/ia64/groff-perl-1.17.2-7.0.2.ia64.rpm
Missing file |
82f6a180010606b6f0a7bd97aab39f42 |
| |
| Red Hat Linux 7.2 |
|
| SRPMS: |
ftp://updates.redhat.com/7.2/en/os/SRPMS/groff-1.17.2-7.0.2.src.rpm
Missing file |
1d4e9b5068fcf178ddacf032c0db523d |
| |
| IA-32: |
ftp://updates.redhat.com/7.2/en/os/i386/groff-1.17.2-7.0.2.i386.rpm
Missing file |
f3181dd6c32ffc9478721244b77c89af |
ftp://updates.redhat.com/7.2/en/os/i386/groff-gxditview-1.17.2-7.0.2.i386.rpm
Missing file |
70ea6d89f289177fa4291e319347b3de |
ftp://updates.redhat.com/7.2/en/os/i386/groff-perl-1.17.2-7.0.2.i386.rpm
Missing file |
d6d520d69decc1c2243daa8179e956d7 |
| |
| IA-64: |
ftp://updates.redhat.com/7.2/en/os/ia64/groff-1.17.2-7.0.2.ia64.rpm
Missing file |
4f08644532e54b8c3553b04148424e56 |
ftp://updates.redhat.com/7.2/en/os/ia64/groff-gxditview-1.17.2-7.0.2.ia64.rpm
Missing file |
c340eacc8bc4ad85894c200ef37cb715 |
ftp://updates.redhat.com/7.2/en/os/ia64/groff-perl-1.17.2-7.0.2.ia64.rpm
Missing file |
82f6a180010606b6f0a7bd97aab39f42 |
| |
| s390: |
ftp://updates.redhat.com/7.2/en/os/s390/groff-1.17.2-7.0.2.s390.rpm
Missing file |
cfaac7783c958b90d50a8c4e7f2b5ad4 |
ftp://updates.redhat.com/7.2/en/os/s390/groff-gxditview-1.17.2-7.0.2.s390.rpm
Missing file |
488f1e2d9cf0c0c31ceb906243583654 |
ftp://updates.redhat.com/7.2/en/os/s390/groff-perl-1.17.2-7.0.2.s390.rpm
Missing file |
06ebd59f8752df6ffc3ea8dd61443727 |
| |