vulnerability

Red Hat: CVE-2011-2923: foomatic: foomatic-rip (debug mode) insecure temporary file use in renderer command line by processing PostScript data

Severity
3
CVSS
(AV:L/AC:M/Au:N/C:N/I:P/A:P)
Published
Nov 19, 2019
Added
Jul 9, 2025
Modified
Jul 9, 2025

Description

foomatic-rip filter, all versions, used insecurely creates temporary files for storage of PostScript data by rendering the data when the debug mode was enabled. This flaw may be exploited by a local attacker to conduct symlink attacks by overwriting arbitrary files accessible with the privileges of the user running the foomatic-rip universal print filter.

Solution

no-fix-redhat-rpm-package
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.