Unrated severityNVD Advisory· Published Dec 27, 2004· Updated Apr 16, 2026
CVE-2004-1377
CVE-2004-1377
Description
The (1) fixps (aka fixps.in) and (2) psmandup (aka psmandup.in) scripts in a2ps before 4.13 allow local users to overwrite arbitrary files via a symlink attack on temporary files.
Affected products
7- cpe:2.3:o:turbolinux:turbolinux_home:*:*:*:*:*:*:*:*
cpe:2.3:o:turbolinux:turbolinux_server:7.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:turbolinux:turbolinux_server:7.0:*:*:*:*:*:*:*
- cpe:2.3:o:turbolinux:turbolinux_server:8.0:*:*:*:*:*:*:*
cpe:2.3:o:turbolinux:turbolinux_workstation:7.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:turbolinux:turbolinux_workstation:7.0:*:*:*:*:*:*:*
- cpe:2.3:o:turbolinux:turbolinux_workstation:8.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- www.gentoo.org/security/en/glsa/glsa-200501-02.xmlnvdPatch
- www.securityfocus.com/bid/12108nvdPatch
- www.securityfocus.com/bid/12109nvdPatch
- secunia.com/advisories/13641nvdVendor Advisory
- www.vuxml.org/freebsd/9168253c-5a6d-11d9-a9e7-0001020eed82.htmlnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/18671nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/18672nvd
News mentions
0No linked articles in our index yet.