CVE-2004-0967

NameCVE-2004-0967
DescriptionThe (1) pj-gs.sh, (2) ps2epsi, (3) pv.sh, and (4) sysvlp.sh scripts in the ESP Ghostscript (espgs) package in Trustix Secure Linux 1.5 through 2.1, and other operating systems, allow local users to overwrite files via a symlink attack on temporary files.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
Debian Bugs291373

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
gs-commonsource(unstable)0.3.6-0.1
gs-gplsource(unstable)8.56.dfsg.1-1unimportant291373

Notes

ps2epsi hole present in gs-gpl, but not shipped in binary

Search for package or bug name: Reporting problems