GS-Common PS2Epsi Insecure Temporary File Vulnerability
BID:7337
Info
GS-Common PS2Epsi Insecure Temporary File Vulnerability
| Bugtraq ID: | 7337 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Apr 14 2003 12:00AM |
| Updated: | Apr 14 2003 12:00AM |
| Credit: | Discovery is credited to Paul Szabo. |
| Vulnerable: |
gs-common gs-common 0.3.3 |
| Not Vulnerable: | |
Discussion
GS-Common PS2Epsi Insecure Temporary File Vulnerability
The ps2espi script included with gs-common creates temporary files in an insecure manner when invoking Ghostscript. A malicious local user could exploit this condition to create a symbolic link that could corrupt any local file which is writeable by the user invoking the vulnerable script.
The ps2espi script included with gs-common creates temporary files in an insecure manner when invoking Ghostscript. A malicious local user could exploit this condition to create a symbolic link that could corrupt any local file which is writeable by the user invoking the vulnerable script.
Exploit / POC
GS-Common PS2Epsi Insecure Temporary File Vulnerability
There is no exploit required.
There is no exploit required.
Solution / Fix
GS-Common PS2Epsi Insecure Temporary File Vulnerability
Solution:
Fixes are available:
gs-common gs-common 0.3.3
Solution:
Fixes are available:
gs-common gs-common 0.3.3
-
Debian gs-common_0.3.3.0woody1_all.deb
http://security.debian.org/pool/updates/main/g/gs-common/gs-common_0.3 .3.0woody1_all.deb
References
GS-Common PS2Epsi Insecure Temporary File Vulnerability
References:
References: