The OpenNET Project
 
Search (keywords):  SOFT ARTICLES TIPS & TRICKS SECURITY
LINKS NEWS MAN DOCUMENTATION


Buffer overflow in Xprt


<< Previous INDEX Search src Set bookmark Go to bookmark Next >>
Date: Mon, 9 Nov 1998 19:24:25 +0100
From: Paolo Molaro <[email protected]>
To: [email protected]
Subject: Buffer overflow in Xprt

There is a buffer overflow in the postscript backend of the
Xprint server: look at the S_OutStr() function in the file psout.c.
A user-supplied variable-lenght string is stored in a 512 sized buffer.
This bug is present in version R6, public-patch-3 and later.

WORKAROUND: do not run the Xprt server.
FIX: make the function malloc() a buffer big enough and recompile.

xfree86 and opengroup have been notified a while ago.

lupus

--
"The number of UNIX installations has grown to 10, with more expected."
    - _The UNIX Programmer's Manual_, Second Edition, June, 1972.

<< Previous INDEX Search src Set bookmark Go to bookmark Next >>



Партнёры:
PostgresPro
Inferno Solutions
Hosting by Hoster.ru
Хостинг:

Закладки на сайте
Проследить за страницей
Created 1996-2025 by Maxim Chirkov
Добавить, Поддержать, Вебмастеру