PT-2004-2129 · Gnu · A2Ps

Rudolf Polzer

·

Published

2004-12-10

·

Updated

2018-10-19

·

CVE-2004-1170

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: a2ps version 4.13
Description: The issue allows remote attackers to execute arbitrary commands via shell metacharacters in the filename. This can lead to unauthorized access and control of the system.
Recommendations: For version 4.13, consider updating to a newer version that addresses this issue, or as a temporary workaround, restrict the use of shell metacharacters in filenames to minimize the risk of exploitation.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-1170
DSA-612-1

Affected Products

A2Ps