Jens Steube discovered that ppxp, yet another PPP program, does not release root privileges when opening potentially user supplied log files. This can be tricked into opening a root shell.
For the old stable distribution (woody) this problem has been fixed in version 0.2001080415-6woody2 (DSA 725-1).
For the stable distribution (sarge) this problem has been fixed in version 0.2001080415-10sarge2.
For the unstable distribution (sid) this problem has been fixed in version 0.2001080415-11.
We recommend that you upgrade your ppxp package.
MD5 checksums of the listed files are available in the original advisory.
MD5 checksums of the listed files are available in the revised advisory.