Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-0466

Опубликовано: 03 апр. 2014
Источник: ubuntu
Приоритет: medium
CVSS2: 6.8

Описание

The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostScript file.

РелизСтатусПримечание
devel

not-affected

1:4.14-1.3
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [1:4.14-1.3]]
lucid

ignored

end of life
precise

released

1:4.14-1.1+deb7u1build0.12.04.1
quantal

ignored

end of life
saucy

ignored

end of life
trusty

not-affected

1:4.14-1.3
trusty/esm

DNE

trusty was not-affected [1:4.14-1.3]
upstream

released

1:4.14-1.3
utopic

not-affected

1:4.14-1.3

Показывать по

Ссылки на источники

6.8 Medium

CVSS2

Связанные уязвимости

redhat
почти 12 лет назад

The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostScript file.

nvd
почти 12 лет назад

The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostScript file.

debian
почти 12 лет назад

The fixps script in a2ps 4.14 does not use the -dSAFER option when exe ...

github
больше 3 лет назад

The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostScript file.

fstec
почти 25 лет назад

Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

6.8 Medium

CVSS2