Buffer overflow in dtprintinfo on HP-UX 11.00, and possibly other operating systems, allows local users to gain root privileges via a long DISPLAY environment variable.
source: wwwsecurityfocuscom/bid/8795/info
It has been reported that dtprintinfo, installed setuid root by default, is susceptible to a locally exploitable buffer overflow vulnerability The condition is triggered when the value of the DISPLAY environment variable is set to a string exceeding 9777 bytes in length The vulnerability may all ...