The daemon is affected by various vulnerabilities which, for brevity,
I have decided to list through the lpd commands (in hex) accepted by
the program:
commands type of bug
01 31 memcpy
02 32 memcpy + sprintf "Receive job for printer %s (berkley
protocol)n"
03 04 33 34 sprintf "QUERY = %sn" + multiple strcpy
05 35 multiple strcpy
53 server termination
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.