newsbot
05-02-2008, 03:10 PM
SAPlpd (http://www.sap.com) is "a small and very old (2001) line printer daemon for Windows which is included in the SAP GUI package". Multiple vulnerabilities have been discovered in SAPlpd that allow remote attackers to cause the server to overflow several internal buffers and to terminate without any authentication requirement.
http://www.securiteam.com/windowsntfocus/5EP021FNFI.html
http://www.securiteam.com/windowsntfocus/5EP021FNFI.html