Skip Navigation

  • Home
  • Contact us
  • FAQ
  • Glossary
  • Public key
  • Sitemap
  • Cymraeg
  • What's new
CPNI - Centre for the Protection of National Infastructure

Advanced search

  • About CPNI
  • The threats
  • Security planning
  • Methods of attack
  • Protecting your assets
  • Products and services
    • CSIRTUK advisories
      • Advisories archive
    • General protective security publications
    • InfoSec briefings
    • InfoSec technical notes
    • InfoSec vulnerability disclosures
    • Good practice guidelines
    • Viewpoints
    • Information exchanges
    • Risk Management Delivery Group
  • Research
Home > Products and services > CSIRTUK advisories > Advisories archive > February 2005 > SCO Security Advisory: UnixWare 7.1.4 : vulnerability in foomatic-rip in Foomatic

February 2005

SCO Security Advisory: UnixWare 7.1.4 : vulnerability in foomatic-rip in Foomatic

ID: 00121
Ref: 104/2005
Date: 10 February 2005:15:38:43
Version: 1

Title: SCO Security Advisory: UnixWare 7.1.4 : vulnerability in foomatic-rip in Foomatic
Abstract: Unknown vulnerability in foomatic-rip in Foomatic before 3.0.2 allows local users or remote attackers with access to CUPS to execute arbitrary commands




Title
=====

SCO Security Advisory: UnixWare 7.1.4 : vulnerability in foomatic-rip in Foomatic

Detail
======

Unknown vulnerability in foomatic-rip in Foomatic before 3.0.2 allows local users or remote attackers with access to CUPS to execute arbitrary commands


______________________________________________________________________________

SCO Security Advisory

Subject: UnixWare 7.1.4 : vulnerability in foomatic-rip in Foomatic
before 3.0.2 allows local users or remote attackers with access
to CUPS to execute arbitrary commands
Advisory number: SCOSA-2005.12
Issue date: 2005 February 07
Cross reference: sr891400 fz530505 erg712704 CAN-2004-0801
______________________________________________________________________________


1. Problem Description

Unknown vulnerability in foomatic-rip in Foomatic before
3.0.2 allows local users or remote attackers with access
to CUPS to execute arbitrary commands

The Common Vulnerabilities and Exposures project (cve.mitre.org)
has assigned the name CAN-2004-0801 to this issue.


2. Vulnerable Supported Versions

System Binaries
----------------------------------------------------------------------
UnixWare 7.1.4 /usr/bin/foomatic-gswrapper
/usr/bin/foomatic-rip

3. Solution

The proper solution is to install the latest packages.

4. UnixWare 7.1.4

4.1 Location of Fixed Binaries

ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.12

4.2 Verification

MD5 (erg712704.pkg) = af69594469448a198e30945ff1b975b3

md5 is available for download from
ftp://ftp.sco.com/pub/security/tools

4.3 Installing Fixed Binaries

Upgrade the affected binaries with the following sequence:

Download erg712704.pkg to the /var/spool/pkg directory

# pkgadd -d /var/spool/pkg/erg712704.pkg


5. References

Specific references for this advisory:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2004-0801
http://xforce.iss.net/xforce/xfdb/17388

SCO security resources:
http://www.sco.com/support/security/index.html

SCO security advisories via email
http://www.sco.com/support/forums/security.html

This security fix closes SCO incidents sr891400 fz530505
erg712704.


6. Disclaimer

SCO is not responsible for the misuse of any of the information
we provide on this website and/or through our security
advisories. Our advisories are a service to our customers
intended to promote secure installation and use of SCO
products.


7. Acknowledgments

SCO would like to thank the SuSE Security Team.


______________________________________________________________________________

- -----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (SCO/UNIX_SVR5)

iD8DBQFCB/J9aqoBO7ipriERAnx3AKCXiXQ6TfOz8fwFieGgPI3Y/mB5uwCgmu08
VWlt2WkYyb5ND83/elgcNcE=
=RKwz
- -----END PGP SIGNATURE-----

______________________________________________________________________
This email has been scanned by the MessageLabs Email Security System. For more information please visit http://www.messagelabs.com/email
______________________________________________________________________

- ----------------------------------------------------------------------------------

For additional information or assistance, please contact the HELP Desk by
telephone or Not Protectively Marked information may be sent via
EMail to: uniras@niscc.gov.uk

Office Hours:
Mon - Fri: 08:30 - 17:00 Hrs
Tel: +44 (0) 870 487 0748 Ext 4511
Fax: +44 (0) 870 487 0749

Outside of Office Hours:
On Call Duty Officer:
Tel: +44 (0) 870 487 0748 and follow the prompts

- ----------------------------------------------------------------------------------
UNIRAS wishes to acknowledge the contributions of SCO for the information
contained in this Briefing.
- ----------------------------------------------------------------------------------




  • Accessibility |
  • Terms and conditions |
  • Privacy statement |
  • Data protection act |
  • Freedom of information |