ghostscript before 6.51 allows local users to read and write arbitrary files as the 'lp' user via the file operator, even with -dSAFER enabled.
Link | Tags |
---|---|
http://www.redhat.com/support/errata/RHSA-2001-138.html | patch vendor advisory |
http://marc.info/?l=lprng&m=100083210910857&w=2 | |
http://archives.neohapsis.com/archives/hp/2001-q4/0069.html | vendor advisory |
http://rhn.redhat.com/errata/RHSA-2001-112.html | vendor advisory |