Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-6358
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-6358

Description:
pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwrite arbitrary files via a symlink attack on the pdfin.[PID].tmp temporary file, which is created when pdftops reads a PDF file from stdin, such as when pdftops is invoked by CUPS.

CVE Status:
Candidate

References:

UBUNTU
  http://www.ubuntu.com/usn/usn-563-1

SAID
  Secunia Advisory: SA28139
  Secunia Advisory: SA28113
  Secunia Advisory: SA28200
  Secunia Advisory: SA28386

OSVDB
  42029

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200712-14.xml

DEBIAN
  http://www.debian.org/security/2007/dsa-1437

CONFIRM
  http://bugs.gentoo.org/show_bug.cgi?id=201042
  http://www.cups.org/articles.php?L515

BID
  26919


Return to the previous page.