a2ps: input validation error
Package(s): | a2ps | CVE #(s): | CAN-2004-1170 CAN-2004-1377 | ||||||||||||||||||||||||
Created: | November 26, 2004 | Updated: | December 19, 2005 | ||||||||||||||||||||||||
Description: | The GNU a2ps utility fails to properly sanitize filenames, which can be abused by a malicious user to execute arbitrary commands with the privileges of the user running the vulnerable application. More information at Security Focus. | ||||||||||||||||||||||||||
Alerts: |
|