CVE-2014-0466

Publication date

2014-04-03 15:00:00

Family

debian

State

PUBLISHED

Description

The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostScript file.