Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2010-2056
Disclosure Date: July 22, 2010 (last updated October 04, 2023)
GNU gv before 3.7.0 allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
0
Attacker Value
Unknown
CVE-2006-5864
Disclosure Date: November 11, 2006 (last updated October 04, 2023)
Stack-based buffer overflow in the ps_gettext function in ps.c for GNU gv 3.6.2, and possibly earlier versions, allows user-assisted attackers to execute arbitrary code via a PostScript (PS) file with certain headers that contain long comments, as demonstrated using the (1) DocumentMedia, (2) DocumentPaperSizes, and possibly (3) PageMedia and (4) PaperSize headers. NOTE: this issue can be exploited through other products that use gv such as evince.
0
Attacker Value
Unknown
CVE-2004-1717
Disclosure Date: August 16, 2004 (last updated February 22, 2025)
Multiple buffer overflows in the psscan function in ps.c for gv (ghostview) allow remote attackers to execute arbitrary code via a Postscript file with a long (1) BoundingBox, (2) comment, (3) Orientation, (4) PageOrder, or (5) Pages value.
0
Attacker Value
Unknown
CVE-2002-1569
Disclosure Date: November 17, 2003 (last updated February 22, 2025)
gv 3.5.8, and possibly earlier versions, allows remote attackers to execute arbitrary commands via shell metacharacters in the filename for (1) a PDF file or (2) a gzip file.
0
Attacker Value
Unknown
CVE-2002-0838
Disclosure Date: October 10, 2002 (last updated February 22, 2025)
Buffer overflow in (1) gv 3.5.8 and earlier, (2) gvv 1.0.2 and earlier, (3) ggv 1.99.90 and earlier, (4) gnome-gv, and (5) kghostview in kdegraphics 2.2.2 and earlier, allows attackers to execute arbitrary code via a malformed (a) PDF or (b) PostScript file, which is processed by an unsafe call to sscanf.
0