CVE-2001-1593
published 2014-04-05CVE-2001-1593: The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used by the spy_user function and possibly other functions, allows local users to…
PriorityP410low2.1CVSS 2.0
AVLACLAuNCNIPAN
EPSS
0.40%
32.1th percentile
The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used by the spy_user function and possibly other functions, allows local users to modify arbitrary files via a symlink attack on a temporary file.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | a2ps | < a2ps 1:4.14-1.2 (bookworm) | a2ps 1:4.14-1.2 (bookworm) |
| gnu | a2ps | <= 4.14 | — |
| gnu | a2ps | — | — |
| gnu | a2ps | — | — |
| gnu | a2ps | — | — |
| gnu | a2ps | — | — |
| gnu | a2ps | — | — |
| gnu | a2ps | >= 0 < 1:4.14-1.2 | 1:4.14-1.2 |
| gnu | a2ps | >= 0 < 1:4.14-1.2 | 1:4.14-1.2 |
| gnu | a2ps | >= 0 < 1:4.14-1.2 | 1:4.14-1.2 |
| gnu | a2ps | >= 0 < 1:4.14-1.2 | 1:4.14-1.2 |
| gnu | a2ps | >= 0 < 1:4.14-1.2 | 1:4.14-1.2 |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:N/I:P/A:N
osv2.1LOW
vendor_debian2.1LOW
vendor_redhat2.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-q93q-4mxv-67mp: The tempname_ensure function in lib/routines
ghsa_unreviewed·2022-04-30
CVE-2001-1593 [LOW] CWE-59 GHSA-q93q-4mxv-67mp: The tempname_ensure function in lib/routines
The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used by the spy_user function and possibly other functions, allows local users to modify arbitrary files via a symlink attack on a temporary file.
OSV
CVE-2001-1593: The tempname_ensure function in lib/routines
osv·2014-04-05·CVSS 2.1
CVE-2001-1593 [LOW] CVE-2001-1593: The tempname_ensure function in lib/routines
The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used by the spy_user function and possibly other functions, allows local users to modify arbitrary files via a symlink attack on a temporary file.
OSV
CVE-2001-1593: Jakub Wilk found that a2ps, a tool to convert text and other types of files to PostScript, insecurely used a temporary file in spy_user()
osv·2014-04-05·CVSS 2.1
CVE-2001-1593 [LOW] CVE-2001-1593: Jakub Wilk found that a2ps, a tool to convert text and other types of files to PostScript, insecurely used a temporary file in spy_user()
Jakub Wilk found that a2ps, a tool to convert text and other types of files to PostScript, insecurely used a temporary file in spy_user(). A local attacker could use this flaw to perform a symbolic link attack to modify an arbitrary file accessible to the user running a2ps.
Red Hat
a2ps: insecure temporary file use
vendor_redhat·2001-01-05·CVSS 2.1
CVE-2001-1593 [LOW] CWE-377 a2ps: insecure temporary file use
a2ps: insecure temporary file use
The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used by the spy_user function and possibly other functions, allows local users to modify arbitrary files via a symlink attack on a temporary file.
Package: a2ps (Red Hat Enterprise Linux 5) - Not affected
Package: a2ps (Red Hat Enterprise Linux 6) - Not affected
Package: a2ps (Red Hat Enterprise Linux 7) - Not affected
Debian
CVE-2001-1593: a2ps - The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used...
vendor_debian·2001·CVSS 2.1
CVE-2001-1593 [LOW] CVE-2001-1593: a2ps - The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used...
The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used by the spy_user function and possibly other functions, allows local users to modify arbitrary files via a symlink attack on a temporary file.
Scope: local
bookworm: resolved (fixed in 1:4.14-1.2)
bullseye: resolved (fixed in 1:4.14-1.2)
forky: resolved (fixed in 1:4.14-1.2)
sid: resolved (fixed in 1:4.14-1.2)
trixie: resolved (fixed in 1:4.14-1.2)
No detection rules found.
No public exploits indexed.
http://pkgs.fedoraproject.org/cgit/a2ps.git/plain/a2ps-4.13-security.patchhttp://seclists.org/oss-sec/2014/q1/237http://seclists.org/oss-sec/2014/q1/253http://seclists.org/oss-sec/2014/q1/257http://www.debian.org/security/2014/dsa-2892https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=737385https://bugzilla.redhat.com/show_bug.cgi?id=1060630http://pkgs.fedoraproject.org/cgit/a2ps.git/plain/a2ps-4.13-security.patchhttp://seclists.org/oss-sec/2014/q1/237http://seclists.org/oss-sec/2014/q1/253http://seclists.org/oss-sec/2014/q1/257http://www.debian.org/security/2014/dsa-2892https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=737385https://bugzilla.redhat.com/show_bug.cgi?id=1060630
2014-04-05
Published