Vulnerability Details CVE-2004-0967
The (1) pj-gs.sh, (2) ps2epsi, (3) pv.sh, and (4) sysvlp.sh scripts in the ESP Ghostscript (espgs) package in Trustix Secure Linux 1.5 through 2.1, and other operating systems, allow local users to overwrite files via a symlink attack on temporary files.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 7.8%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2004-0967
-
cpe:2.3:a:aladdin_enterprises:ghostscript:4.3
-
cpe:2.3:a:aladdin_enterprises:ghostscript:4.3.2
-
cpe:2.3:a:aladdin_enterprises:ghostscript:5.10.10
-
cpe:2.3:a:aladdin_enterprises:ghostscript:5.10.10_1
-
cpe:2.3:a:aladdin_enterprises:ghostscript:5.10.12cl
-
cpe:2.3:a:aladdin_enterprises:ghostscript:5.10.15
-
cpe:2.3:a:aladdin_enterprises:ghostscript:5.10.16
-
cpe:2.3:a:aladdin_enterprises:ghostscript:5.10cl
-
cpe:2.3:a:aladdin_enterprises:ghostscript:5.50
-
cpe:2.3:a:aladdin_enterprises:ghostscript:5.50.8
-
cpe:2.3:a:aladdin_enterprises:ghostscript:5.50.8_7
-
cpe:2.3:a:aladdin_enterprises:ghostscript:6.51
-
cpe:2.3:a:aladdin_enterprises:ghostscript:6.52
-
cpe:2.3:a:aladdin_enterprises:ghostscript:6.53
-
cpe:2.3:a:aladdin_enterprises:ghostscript:7.0.4
-
cpe:2.3:a:aladdin_enterprises:ghostscript:7.0.5
-
cpe:2.3:a:aladdin_enterprises:ghostscript:7.0.6
-
cpe:2.3:a:aladdin_enterprises:ghostscript:7.0.7