[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248585

 
 

909

 
 

195621

 
 

282

Paid content will be excluded from the download.


Download | Alert*


CVE-2014-0466
The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostScript file.

CVE-2001-1593
The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used by the spy_user function and possibly other functions, allows local users to modify arbitrary files via a symlink attack on a temporary file.

*OVAL
oval:org.secpod.oval:def:601244
CPE    9
cpe:/a:gnu:a2ps:4.14
cpe:/a:gnu:a2ps:4.13
cpe:/o:debian:debian_linux:6.x
cpe:/a:gnu:a2ps
...

© SecPod Technologies