Symlink Vulnerability in GNU a2ps Product by GNU
CVE-2004-1377

Currently unrated

Key Information:

Vendor
Gnu
Status
Vendor
CVE Published:
27 December 2004

Summary

The fixps and psmandup scripts in GNU a2ps version 4.12 and earlier are susceptible to a symlink attack that allows local users to overwrite arbitrary files. By exploiting this weakness, an attacker can create symlinks to sensitive files, gaining unauthorized access to modify or corrupt critical data, thus jeopardizing the system's integrity and security.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.