CVE-2001-1593
Publication date 5 April 2014
Last updated 24 July 2024
Ubuntu priority
Description
Jakub Wilk found that a2ps, a tool to convert text and other types of files to PostScript, insecurely used a temporary file in spy_user(). A local attacker could use this flaw to perform a symbolic link attack to modify an arbitrary file accessible to the user running a2ps.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| a2ps | ||
| 14.04 LTS trusty | Not in release | |
Patch details
| Package | Patch details |
|---|---|
| a2ps |