html2ps: arbitrary code execution
Package(s): | html2ps | CVE #(s): | |||||||||
Created: | November 8, 2002 | Updated: | December 6, 2002 | ||||||||
Description: | The SuSE Security Team found a vulnerability in html2ps, a HTML to PostScript converter, that opened files based on unsanitized input insecurely. This problem can be exploited when html2ps is installed as filter within lrpng and the attacker has previously gained access to the lp account. | ||||||||||
Alerts: |
|