CVE Vulnerabilities

CVE-2004-1377

Published: Dec 27, 2004 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

The (1) fixps (aka fixps.in) and (2) psmandup (aka psmandup.in) scripts in a2ps before 4.13 allow local users to overwrite arbitrary files via a symlink attack on temporary files.

Affected Software

Name Vendor Start Version End Version
A2ps Gnu 4.13 (including) 4.13 (including)
A2ps Gnu 4.13b (including) 4.13b (including)
A2ps Ubuntu dapper *
A2ps Ubuntu devel *
A2ps Ubuntu edgy *
A2ps Ubuntu feisty *

References