VYPR
Unrated severityNVD Advisory· Published Oct 28, 2002· Updated Apr 16, 2026

CVE-2002-0836

CVE-2002-0836

Description

dvips converter for Postscript files in the tetex package calls the system() function insecurely, which allows remote attackers to execute arbitrary commands via certain print jobs, possibly involving fonts.

Affected products

27
  • cpe:2.3:o:hp:secure_os:1.0:*:linux:*:*:*:*:*
  • cpe:2.3:o:mandrakesoft:mandrake_linux:7.2:*:*:*:*:*:*:*+ 7 more
    • cpe:2.3:o:mandrakesoft:mandrake_linux:7.2:*:*:*:*:*:*:*
    • cpe:2.3:o:mandrakesoft:mandrake_linux:8.0:*:*:*:*:*:*:*
    • cpe:2.3:o:mandrakesoft:mandrake_linux:8.0:*:ppc:*:*:*:*:*
    • cpe:2.3:o:mandrakesoft:mandrake_linux:8.1:*:*:*:*:*:*:*
    • cpe:2.3:o:mandrakesoft:mandrake_linux:8.1:*:ia64:*:*:*:*:*
    • cpe:2.3:o:mandrakesoft:mandrake_linux:8.2:*:*:*:*:*:*:*
    • cpe:2.3:o:mandrakesoft:mandrake_linux:8.2:*:ppc:*:*:*:*:*
    • cpe:2.3:o:mandrakesoft:mandrake_linux:9.0:*:*:*:*:*:*:*
  • Red Hat/Linux18 versions
    cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*+ 17 more
    • cpe:2.3:o:redhat:linux:6.2:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:6.2:*:alpha:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:6.2:*:i386:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:6.2:*:sparc:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.0:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.0:*:alpha:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.0:*:i386:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.1:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.1:*:alpha:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.1:*:i386:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.1:*:ia64:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.2:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.2:*:i386:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.2:*:ia64:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.3:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:7.3:*:i386:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:8.0:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:linux:8.0:*:i386:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

11

News mentions

0

No linked articles in our index yet.