CVE-2014-0466
Publication date 3 April 2014
Last updated 24 July 2024
Ubuntu priority
The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostScript file.
Status
Package | Ubuntu Release | Status |
---|---|---|
a2ps | ||
14.04 LTS trusty | Not in release | |