CVE

Id
13742  
CVE No.
CVE-2005-2536  
Status
Candidate  
Description
pstotext before 1.8g does not properly use the "-dSAFER" option when calling Ghostscript to extract plain text from PostScript and PDF files, which allows remote attackers to execute arbitrary commands via a malicious PostScript file.  
Phase
Assigned (20050810)  
Votes
None (candidate not yet proposed)  
Comments