Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

GNU A2PS psmandup.in Script Insecure Temporary File Vulnerability

GNU a2ps is prone to a vulnerability that may allow malicious local users to corrupt files. This issue is due to the fact that the 'psmandup.in' script creates temporary files in an insecure manner, allowing symbolic link attacks.

File corruption would occur in the context of the user running the script. It is not known if this issue could be leveraged to elevate privileges.







 

Privacy Statement
Copyright 2008, SecurityFocus