Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 507
Alerts This Week
Warning Icon 1 507

Gentoo 200404-19: Moderate LCDproc Buffer Overflows Remote Exec

gentoo
Calendar Grey April 27, 2004
Scroller Gentoo
Multiple remote weaknesses discovered in the LCDd server allow for unauthorized code execution on Gentoo installations. Updating is recommended!
Multiple remote vulnerabilities have been found in the LCDd server, allowing execution of arbitrary code with the rights of the LCDd user.

Summary

From gentoo-announce-return-229-alerts=linuxsecurity.com@lists.gentoo.org  Tue Apr 27 01:21:44 2004
Return-Path: 
Delivered-To: alerts@jupiter.dmz.guardiandigital.com
Received: from juggernaut.guardiandigital.com (ns.guardiandigital.com [209.11.107.5])
	by jupiter.dmz.guardiandigital.com (Postfix) with ESMTP id 6ED812A004C
	for ; Tue, 27 Apr 2004 01:21:44 -0400 (EDT)
Received: from localhost (localhost [127.0.0.1])
	by localhost (Postfix) with ESMTP id 42E705C142
	for ; Tue, 27 Apr 2004 01:21:44 -0400 (EDT)
Received: from juggernaut.guardiandigital.com ([127.0.0.1])
 by localhost (juggernaut.guardiandigital.com [127.0.0.1]) (amavisd-new, port 10024)
 with ESMTP id 04455-02 for ;
 Tue, 27 Apr 2004 01:21:35 -0400 (EDT)
Received: from eagle.gentoo.org (eagle.gentoo.oregonstate.edu [128.193.0.34])
	by juggernaut.guardiandigital.com (Postfix) with ESMTP id D8E613C0EB
	for ; Tue, 27 Apr 2004 01:21:34 -0400 (EDT)
Received: (qmail 6557 invoked by uid 50004); 27 Apr 2004 05:21:33 +0000
Maili...
...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround