First published: Thu Jul 26 2001(Updated: )
Format string vulnerability in pic utility in groff 1.16.1 and other versions, and jgroff before 1.15, allows remote attackers to bypass the -S option and execute arbitrary commands via format string specifiers in the plot command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNU Groff | =1.16.1 | |
GNU Groff | =1.11a | |
GNU Groff | =1.14 | |
Jgroff Jgroff | ||
GNU Groff | =1.10 | |
GNU Groff | =1.11 | |
GNU Groff | =1.15 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.