Gnu

A2ps

5 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.72%
  • Published 13.04.2017 14:59:00
  • Last modified 20.04.2025 01:37:25

Format string vulnerability in GNU a2ps 4.14 allows remote attackers to execute arbitrary code.

  • EPSS 0.13%
  • Published 05.04.2014 21:55:06
  • Last modified 12.04.2025 10:46:40

The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used by the spy_user function and possibly other functions, allows local users to modify arbitrary files via a symlink attack on a temporary file.

  • EPSS 0.31%
  • Published 03.04.2014 16:15:39
  • Last modified 12.04.2025 10:46:40

The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostScript file.

Exploit
  • EPSS 15.59%
  • Published 10.01.2005 05:00:00
  • Last modified 03.04.2025 01:03:51

a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename.

  • EPSS 0.07%
  • Published 27.12.2004 05:00:00
  • Last modified 03.04.2025 01:03:51

The (1) fixps (aka fixps.in) and (2) psmandup (aka psmandup.in) scripts in a2ps before 4.13 allow local users to overwrite arbitrary files via a symlink attack on temporary files.