Link following in Debian Linux - CVE-2011-2923
Published: November 19, 2019 / Updated: August 8, 2020
Debian Linux
Detailed vulnerability description
The vulnerability allows a local authenticated user to manipulate data.
foomatic-rip filter, all versions, used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mode was enabled. This flaw may be exploited by a local attacker to conduct symlink attacks by overwriting arbitrary files accessible with the privileges of the user running the foomatic-rip universal print filter.