Format string vulnerability in GNU a2ps 4.14 allows remote attackers to execute arbitrary code.
The product uses a function that accepts a format string as an argument, but the format string originates from an external source.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/77595 | vdb entry third party advisory |
http://seclists.org/oss-sec/2015/q4/284 | third party advisory mailing list |