|
|
| |
| The dtmailpr (mail message print filter) program reads a filename (which contains one or more mail messages from mailx or dtmail), and sends the message to standard out with headers abbreviated and attachments removed. If no filename argument is provided dtmailpr reads from standard in. A vulnerability in the way the product handles a long DISPLAY argument allows local attackers to execute arbitrary code. |
| |
Credit:
The information has been provided by Davide Del Vecchio.
|
| |
Vulnerable systems:
* HP-UX versions B.11.00, B.11.11, B.11.22, B.11.23
Solution:
Install the applicable patch (See details at: http://www4.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX0311-300):
* B.11.00 PHSS_29734
* B.11.11 PHSS_29735
* B.11.22 PHSS_29736
* B.11.23 PHSS_29737
|
|
|