CVE-2001-1593
Publication date 5 April 2014
Last updated 24 July 2024
Ubuntu priority
Jakub Wilk found that a2ps, a tool to convert text and other types of files to PostScript, insecurely used a temporary file in spy_user(). A local attacker could use this flaw to perform a symbolic link attack to modify an arbitrary file accessible to the user running a2ps.
Status
Package | Ubuntu Release | Status |
---|---|---|
a2ps | ||
14.04 LTS trusty | Not in release | |
Patch details
Package | Patch details |
---|---|
a2ps |