CVE
- Id
- 9613
- CVE No.
- CVE-2004-1185
- Status
- Candidate
- Description
- Enscript 1.6.3 does not sanitize filenames, which allows remote attackers or local users to execute arbitrary commands via crafted filenames.
- Phase
- Assigned (20041213)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
| Id | CVE Id | CVE No. | Reference | Actions |
|---|---|---|---|---|
| 65360 | 9613 | CVE-2004-1185 | BUGTRAQ:20060526 rPSA-2006-0083-1 enscript | View |
| 65361 | 9613 | CVE-2004-1185 | URL:http://www.securityfocus.com/archive/1/archive/1/435199/100/0/threaded | View |
| 65362 | 9613 | CVE-2004-1185 | CONFIRM:http://support.apple.com/kb/HT3549 | View |
| 65363 | 9613 | CVE-2004-1185 | APPLE:APPLE-SA-2009-05-12 | View |
| 65364 | 9613 | CVE-2004-1185 | URL:http://lists.apple.com/archives/security-announce/2009/May/msg00002.html | View |
| 65365 | 9613 | CVE-2004-1185 | DEBIAN:DSA-654 | View |
| 65366 | 9613 | CVE-2004-1185 | URL:http://www.debian.org/security/2005/dsa-654 | View |
| 65367 | 9613 | CVE-2004-1185 | FEDORA:FLSA:152892 | View |
| 65368 | 9613 | CVE-2004-1185 | URL:http://www.securityfocus.com/archive/1/archive/1/419768/100/0/threaded | View |
| 65369 | 9613 | CVE-2004-1185 | GENTOO:GLSA-200502-03 | View |
| 65370 | 9613 | CVE-2004-1185 | URL:http://www.gentoo.org/security/en/glsa/glsa-200502-03.xml | View |
| 65371 | 9613 | CVE-2004-1185 | MANDRAKE:MDKSA-2005:033 | View |
| 65372 | 9613 | CVE-2004-1185 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2005:033 | View |
| 65373 | 9613 | CVE-2004-1185 | REDHAT:RHSA-2005:040 | View |
| 65374 | 9613 | CVE-2004-1185 | URL:http://www.redhat.com/support/errata/RHSA-2005-040.html | View |
| 65375 | 9613 | CVE-2004-1185 | UBUNTU:USN-68-1 | View |
| 65376 | 9613 | CVE-2004-1185 | URL:http://www.ubuntulinux.org/support/documentation/usn/usn-68-1 | View |
| 65377 | 9613 | CVE-2004-1185 | CERT:TA09-133A | View |
| 65378 | 9613 | CVE-2004-1185 | URL:http://www.us-cert.gov/cas/techalerts/TA09-133A.html | View |
| 65379 | 9613 | CVE-2004-1185 | BID:12329 | View |
| 65380 | 9613 | CVE-2004-1185 | URL:http://www.securityfocus.com/bid/12329 | View |
| 65381 | 9613 | CVE-2004-1185 | OVAL:oval:org.mitre.oval:def:10808 | View |
| 65382 | 9613 | CVE-2004-1185 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10808 | View |
| 65383 | 9613 | CVE-2004-1185 | SECTRACK:1012965 | View |
| 65384 | 9613 | CVE-2004-1185 | URL:http://securitytracker.com/id?1012965 | View |
| 65385 | 9613 | CVE-2004-1185 | SECUNIA:35074 | View |
| 65386 | 9613 | CVE-2004-1185 | URL:http://secunia.com/advisories/35074 | View |
| 65387 | 9613 | CVE-2004-1185 | VUPEN:ADV-2009-1297 | View |
| 65388 | 9613 | CVE-2004-1185 | URL:http://www.vupen.com/english/advisories/2009/1297 | View |
| 65389 | 9613 | CVE-2004-1185 | XF:enscript-filename-command-execution(19029) | View |
Related JVN
| Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 61853 | JVNDB-2005-000055 | GNU enscript における複数のバッファオーバーフローの脆弱性 | ------------ | CVE-2004-1186 | 9613 | 5 | http://jvndb.jvn.jp/ja/contents/2005/JVNDB-2005-000055.html | View |