exploit-db-mirror/exploits/hp-ux/dos/23236.txt
Offensive Security b4c96a5864 DB: 2021-09-03
28807 changes to exploits/shellcodes
2021-09-03 20:19:21 +00:00

5 lines
No EOL
467 B
Text

source: https://www.securityfocus.com/bid/8795/info
It has been reported that dtprintinfo, installed setuid root by default, is susceptible to a locally exploitable buffer overflow vulnerability. The condition is triggered when the value of the DISPLAY environment variable is set to a string exceeding 9777 bytes in length. The vulnerability may allow for local attackers to gain root privileges on the affected host.
export DISPLAY="`perl -e 'printf "A" x 9777'`"