This is a re-release of a prior uucp exploit errata which also prevents unique substrings being used with long options. uuxqt, in the Taylor UUCP package, does not properly remove dangerous long options. These long options allow local users to gain uid and gid uucp privileges by calling uux and specifying an alternate configuration file with the --config option.
Please note, Red Hat Linux 7.2 is vulnerable to this bug. Additionally, Red Hat Linux 7.2 uses a different locking scheme than prior versions and the 7.2 packages should not be applied to Red Hat Linux 7.0 or 7.1 systems. Use the relevant packages from this errata instead. Conversely, the 7.1 packages from this errata should not be applied to a Red Hat Linux 7.2 system. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2001-0873 to this issue.