CVE-2014-0466 log

Source
Severity High
Remote No
Type Arbitrary command execution
Description
The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostScript file.
Group Package Affected Fixed Severity Status Ticket
AVG-1150 a2ps 4.14-8 4.14-9 High Fixed
Date Advisory Group Package Severity Type
06 May 2020 ASA-202005-4 AVG-1150 a2ps High multiple issues
References
https://github.com/akimd/a2ps/commit/5ea5ff8bc0094ca1eda0dd0e011d860e994c0a88