← Back

A2ps

a2ps

Vendor: Gnu • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Gnu
1A2ps
May 13, 2026
Apr 13, 2017
N/A· v4
7.8 HIGH· v3
6.8 MEDIUM· v2
Format string vulnerability in GNU a2ps 4.14 allows remote attackers to execute arbitrary code.
1Gnu
1A2ps
May 6, 2026
Apr 5, 2014
N/A· v4
N/A· v3
2.1 LOW· v2
The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used by the spy_user function and possibly other functions, allows local users to modify arbitrary files via a symlink attack on a temporary fil...Show more
The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used by the spy_user function and possibly other functions, allows local users to modify arbitrary files via a symlink attack on a temporary file.Show less
1Gnu
1A2ps
May 6, 2026
Apr 3, 2014
N/A· v4
N/A· v3
6.8 MEDIUM· v2
The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostScript file.
3Gnu
SunSuse
3A2ps
Java Desktop SystemSuse Linux
Apr 16, 2026
Jan 10, 2005
N/A· v4
N/A· v3
10.0 HIGH· v2
a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename.
2Gnu
Turbolinux
4A2ps
Turbolinux HomeTurbolinux Server+1 more
Apr 16, 2026
Dec 27, 2004
N/A· v4
N/A· v3
2.1 LOW· v2
The (1) fixps (aka fixps.in) and (2) psmandup (aka psmandup.in) scripts in a2ps before 4.13 allow local users to overwrite arbitrary files via a symlink attack on temporary files.