Vulnerabilities > CVE-2001-1353 - Unspecified vulnerability in Aladdin Enterprises Ghostscript
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
ghostscript before 6.51 allows local users to read and write arbitrary files as the 'lp' user via the file operator, even with -dSAFER enabled.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Redhat
advisories |
|
References
- http://archives.neohapsis.com/archives/hp/2001-q4/0069.html
- http://archives.neohapsis.com/archives/hp/2001-q4/0069.html
- http://marc.info/?l=lprng&m=100083210910857&w=2
- http://marc.info/?l=lprng&m=100083210910857&w=2
- http://rhn.redhat.com/errata/RHSA-2001-112.html
- http://rhn.redhat.com/errata/RHSA-2001-112.html
- http://www.redhat.com/support/errata/RHSA-2001-138.html
- http://www.redhat.com/support/errata/RHSA-2001-138.html