Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

Gentoo GLSA-200502-03 Normal: Enscript Code Execution Risks

gentoo
Calendar Grey February 2, 2005
Scroller Gentoo
Safeguard your infrastructure with the newest patch releases in light of newly identified critical vulnerabilities that threaten unauthorized command execution.
enscript suffers from vulnerabilities and design flaws, potentially resulting in the execution of arbitrary code.

Summary

Gentoo Linux Security Advisory GLSA 200502-03 https://security.gentoo.org/ Severity: Normal Title: enscript: Multiple vulnerabilities Date: February 02, 2005 Bugs: #77408 ID: 200502-03

Synopsis ======= enscript suffers from vulnerabilities and design flaws, potentially resulting in the execution of arbitrary code.
Background ========= enscript is a powerful ASCII to PostScript file converter.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 app-text/enscript < 1.6.3-r3 >= 1.6.3-r3
========== Erik Sjolund discovered several issues in enscript: it suffers from several buffer overflows (CAN-2004-1186), quotes and shell escape characters are insufficiently sanitize...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround