6.4
CVSSv2

CVE-2009-5078

Published: 30/06/2011 Updated: 30/03/2016
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 6.5 | Impact Score: 2.5 | Exploitability Score: 3.9
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

contrib/pdfmark/pdfroff.sh in GNU troff (aka groff) prior to 1.21 launches the Ghostscript program without the -dSAFER option, which allows remote malicious users to create, overwrite, rename, or delete arbitrary files via a crafted document.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu groff 1.19

gnu groff 1.18.1

gnu groff

gnu groff 1.16.1

gnu groff 1.17.1

gnu groff 1.11a

gnu groff 1.15

gnu groff 1.20

gnu groff 1.19.1

gnu groff 1.19.2

gnu groff 1.10

gnu groff 1.16

gnu groff 1.17.2

gnu groff 1.11

gnu groff 1.14

apple mac os x