Skip to main content

CVE-2007-6358

Severity Medium
Score 4.9/10

Summary

pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwrite arbitrary files via a symlink attack on the pdfin.[PID].tmp temporary file, which is created when pdftops reads a PDF file from stdin, such as when pdftops is invoked by CUPS.

  • LOW
  • LOCAL
  • NONE
  • COMPLETE
  • NONE
  • NONE

References

Advisory Timeline

  • Published