LWN.net Logo

gv: multiple vulnerabilities

Package(s):gv CVE #(s):CVE-2010-2055 CVE-2010-2056
Created:July 9, 2010 Updated:February 6, 2012
Description: From the Red Hat bugzilla:

a deficiency in the way gv handled temporary file creation, when used for opening Portable Document Format (PDF) files. A local attacker could use this flaw to conduct symlink attacks, potentially leading to denial of service (un-athorized overwrite of file content). (CVE-2010-2056)

From the Red Hat bugzilla:

A security flaw was found in the way gs handled its initialization: 1, certain files in current working directory were honored at startup, 2, explicit use of "-P-" command line option, did not prevent ghostscript from execution of PostScript commands, contained within "gs_init.ps" file.

A local attacker could use this flaw to execute arbitrary PostScript commands, if the victim was tricked into opening a PostScript file in the directory of attacker's intent. (CVE-2010-2055)

Alerts:
MeeGo MeeGo-SA-10:35 2010-11-03
Mandriva MDVSA-2010:159 2010-08-23
SUSE SUSE-SR:2010:014 2010-08-02
openSUSE openSUSE-SU-2010:0425-2 2010-08-02
openSUSE openSUSE-SU-2010:0451-1 2010-08-02
Fedora FEDORA-2010-14633 2010-09-15
Fedora FEDORA-2010-14640 2010-09-15
openSUSE openSUSE-SU-2010:0425-1 2010-07-23
Fedora FEDORA-2010-10642 2010-07-01
Fedora FEDORA-2010-10660 2010-07-01
Red Hat RHSA-2012:0095-01 2012-02-02
CentOS CESA-2012:0095 2012-02-03
CentOS CESA-2012:0095 2012-02-03
Scientific Linux SL-ghos-20120203 2012-02-03
Oracle ELSA-2012-0095 2012-02-03
Oracle ELSA-2012-0096 2012-02-03
Oracle ELSA-2012-0095 2012-02-03

(Log in to post comments)

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds