CVE-2014-0466 - log back

CVE-2014-0466 edited at 09 May 2020 16:30:23
References
+ https://github.com/akimd/a2ps/commit/5ea5ff8bc0094ca1eda0dd0e011d860e994c0a88
CVE-2014-0466 edited at 06 May 2020 17:30:56
Severity
- Unknown
+ High
Remote
- Unknown
+ Local
Type
- Unknown
+ Arbitrary command execution
Description
+ The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostScript file.
References
Notes
CVE-2014-0466 created at 06 May 2020 17:29:25