Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2007-6358
HistoryDec 15, 2007 - 1:46 a.m.

CVE-2007-6358

2007-12-1501:46:00
Debian Security Bug Tracker
security-tracker.debian.org
12

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

COMPLETE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:N/I:C/A:N

EPSS

0

Percentile

5.1%

pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwrite arbitrary files via a symlink attack on the pdfin.[PID].tmp temporary file, which is created when pdftops reads a PDF file from stdin, such as when pdftops is invoked by CUPS.

CVSS2

4.9

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

COMPLETE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:N/I:C/A:N

EPSS

0

Percentile

5.1%