CVE-2000-1162: Low severity Aladdin Enterprises Ghostscript vulnerability
Published Jan 9, 2001
·Updated
ghostscript before 5.10-16 allows local users to overwrite files of other users via a symlink attack.
Affected Software
4 affected components
Aladdin Enterprises Ghostscript=4.3
Aladdin Enterprises Ghostscript=5.10.10
Aladdin Enterprises Ghostscript=5.10.15
Aladdin Enterprises Ghostscript=5.50
Remediation
Patch Available
Event History
Jan 9, 2001
CVE Published
05:00 AM
Jan 22, 2001
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2000-1162?
CVE-2000-1162 is considered to have a medium severity due to its potential to allow local users to overwrite files of other users.
2
How do I fix CVE-2000-1162?
To fix CVE-2000-1162, it is recommended to upgrade to a patched version of Ghostscript that addresses this vulnerability.
3
Which versions of Ghostscript are affected by CVE-2000-1162?
CVE-2000-1162 affects Ghostscript versions prior to 5.10-16, including 5.10.10, 5.10.15, and 4.3.
4
What type of attack does CVE-2000-1162 involve?
CVE-2000-1162 involves a symlink attack where local users can exploit the vulnerability to overwrite files belonging to other users.
5
Is CVE-2000-1162 still relevant for current systems?
While CVE-2000-1162 is an older vulnerability, it remains relevant for systems still running affected versions of Ghostscript.