Show filters
146 Total Results
Displaying 141-146 of 146
Sort by:
Attacker Value
Unknown

CVE-2004-0967

Disclosure Date: February 09, 2005 (last updated February 22, 2025)
The (1) pj-gs.sh, (2) ps2epsi, (3) pv.sh, and (4) sysvlp.sh scripts in the ESP Ghostscript (espgs) package in Trustix Secure Linux 1.5 through 2.1, and other operating systems, allow local users to overwrite files via a symlink attack on temporary files.
0
Attacker Value
Unknown

CVE-2002-0363

Disclosure Date: May 29, 2002 (last updated February 22, 2025)
ghostscript before 6.53 allows attackers to execute arbitrary commands by using .locksafe or .setsafe to reset the current pagedevice.
0
Attacker Value
Unknown

CVE-2001-1353

Disclosure Date: September 18, 2001 (last updated February 22, 2025)
ghostscript before 6.51 allows local users to read and write arbitrary files as the 'lp' user via the file operator, even with -dSAFER enabled.
0
Attacker Value
Unknown

CVE-2000-1163

Disclosure Date: January 09, 2001 (last updated February 22, 2025)
ghostscript before 5.10-16 uses an empty LD_RUN_PATH environmental variable to find libraries in the current directory, which could allow local users to execute commands as other users by placing a Trojan horse library into a directory from which another user executes ghostscript.
0
Attacker Value
Unknown

CVE-2000-1162

Disclosure Date: January 09, 2001 (last updated February 22, 2025)
ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack.
0
Attacker Value
Unknown

CVE-1999-0155

Disclosure Date: August 31, 1995 (last updated February 22, 2025)
The ghostscript command with the -dSAFER option allows remote attackers to execute commands.
0