|
|
Log in / Subscribe / Register

dvips: command execution vulnerability

Package(s):dvips CVE #(s):CAN-2002-0836
Created:October 16, 2002 Updated:June 10, 2003
Description: The dvips utility uses the system() function improperly when managing fonts. An attacker who can craft the right sort of print job can use this vulnerability to execute commands under the UID used by the print system.
Alerts:
Immunix IMNX-2003-7+-016-01 tetex, psutils, w3c-libwww 2003-06-09
OpenPKG OpenPKG-SA-2002.015 tetex 2002-12-16
Debian DSA-207-1 tetex-bin 2002-12-11
Conectiva CLA-2002:537 tetex 2002-10-29
Mandrake MDKSA-2002:071 kdegraphics 2002-10-24
Mandrake MDKSA-2002:070 tetex 2002-10-23
Gentoo tetex-20021018 tetex 2002-10-18
Red Hat RHSA-2002:194-18 dvips 2002-10-08

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds