6.8
CVSSv2

CVE-2008-5078

Published: 19/12/2008 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple buffer overflows in the (1) recognize_eps_file function (src/psgen.c) and (2) tilde_subst function (src/util.c) in GNU enscript 1.6.1, and possibly earlier, might allow remote malicious users to execute arbitrary code via an epsf escape sequence with a long filename.

Vulnerable Product Search on Vulmon Subscribe to Product

gnu escript 1.6.1

Vendor Advisories

Synopsis Moderate: enscript security update Type/Severity Security Advisory: Moderate Topic An updated enscript packages that fixes several security issues is nowavailable for Red Hat Enterprise Linux 21, 3, and 4This update has been rated as having moderate security impact by the RedHat Security Response ...