CVE-2007-6358

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
15/12/2007
Last modified:
09/04/2025

Description

pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwrite arbitrary files via a symlink attack on the pdfin.[PID].tmp temporary file, which is created when pdftops reads a PDF file from stdin, such as when pdftops is invoked by CUPS.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:glyph_and_cog:pdftops:*:*:*:*:*:*:*:* 1.1.19rc1 (including)