Lucene search

K
cveMitreCVE-2002-0836
HistorySep 01, 2004 - 4:00 a.m.

CVE-2002-0836

2004-09-0104:00:00
mitre
web.nvd.nist.gov
34
cve
dvips
postscript
tetex
remote attackers
arbitrary commands
nvd

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.013

Percentile

86.3%

dvips converter for Postscript files in the tetex package calls the system() function insecurely, which allows remote attackers to execute arbitrary commands via certain print jobs, possibly involving fonts.

Affected configurations

Nvd
Node
hpsecure_osMatch1.0linux
OR
mandrakesoftmandrake_linuxMatch7.2
OR
mandrakesoftmandrake_linuxMatch8.0
OR
mandrakesoftmandrake_linuxMatch8.0ppc
OR
mandrakesoftmandrake_linuxMatch8.1
OR
mandrakesoftmandrake_linuxMatch8.1ia64
OR
mandrakesoftmandrake_linuxMatch8.2
OR
mandrakesoftmandrake_linuxMatch8.2ppc
OR
mandrakesoftmandrake_linuxMatch9.0
OR
redhatlinuxMatch6.2
OR
redhatlinuxMatch6.2alpha
OR
redhatlinuxMatch6.2i386
OR
redhatlinuxMatch6.2sparc
OR
redhatlinuxMatch7.0
OR
redhatlinuxMatch7.0alpha
OR
redhatlinuxMatch7.0i386
OR
redhatlinuxMatch7.1
OR
redhatlinuxMatch7.1alpha
OR
redhatlinuxMatch7.1i386
OR
redhatlinuxMatch7.1ia64
OR
redhatlinuxMatch7.2
OR
redhatlinuxMatch7.2i386
OR
redhatlinuxMatch7.2ia64
OR
redhatlinuxMatch7.3
OR
redhatlinuxMatch7.3i386
OR
redhatlinuxMatch8.0
OR
redhatlinuxMatch8.0i386
VendorProductVersionCPE
hpsecure_os1.0cpe:2.3:o:hp:secure_os:1.0:*:linux:*:*:*:*:*
mandrakesoftmandrake_linux7.2cpe:2.3:o:mandrakesoft:mandrake_linux:7.2:*:*:*:*:*:*:*
mandrakesoftmandrake_linux8.0cpe:2.3:o:mandrakesoft:mandrake_linux:8.0:*:*:*:*:*:*:*
mandrakesoftmandrake_linux8.0cpe:2.3:o:mandrakesoft:mandrake_linux:8.0:*:ppc:*:*:*:*:*
mandrakesoftmandrake_linux8.1cpe:2.3:o:mandrakesoft:mandrake_linux:8.1:*:*:*:*:*:*:*
mandrakesoftmandrake_linux8.1cpe:2.3:o:mandrakesoft:mandrake_linux:8.1:*:ia64:*:*:*:*:*
mandrakesoftmandrake_linux8.2cpe:2.3:o:mandrakesoft:mandrake_linux:8.2:*:*:*:*:*:*:*
mandrakesoftmandrake_linux8.2cpe:2.3:o:mandrakesoft:mandrake_linux:8.2:*:ppc:*:*:*:*:*
mandrakesoftmandrake_linux9.0cpe:2.3:o:mandrakesoft:mandrake_linux:9.0:*:*:*:*:*:*:*
redhatlinux6.2cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*
Rows per page:
1-10 of 271

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.4

Confidence

Low

EPSS

0.013

Percentile

86.3%