OSVDB ID: 22442

Title: Solaris lpsched Unauthorized Local Service Shutdown

Info

Disclosure

Jan 13, 2006

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Unknown

Description

Sun Solaris' 'lpsched' utility contains a flaw that may allow a local denial of service by allowing unauthorized users to shut down the printing service. No further details have been provided.

Classification

Location: Local Access Required
Attack Type: Denial of Service
Impact: Loss of Availability
Exploit: Exploit Unknown
Disclosure: OSVDB Verified

Solution

Currently, there are no known workarounds or upgrades to correct this issue. However, Sun has released patches to address this vulnerability. On the SPARC platform, apply patch 109320-17 or later (Solaris 8), patch 113329-16 or later (Solaris 9) or patch 120467-03 or later (Solaris 10). On the x86 platform, apply patch 109321-17 or later (Solaris 8), patch 114980-17 or later (Solaris 9) or patch 120468-03 or later (Solaris 10).

Products

Sun Microsystems, Inc.

Solaris

8
9
10

References

Credit

  • Hiroshi Nakano - Ryukoku University


Direct URL: http://osvdb.org/22442