CVE-2002-0836

dvips converter for Postscript files in the tetex package calls the system() function insecurely, which allows remote attackers to execute arbitrary commands via certain print jobs, possibly involving fonts.

Scoring

CVSS base score
0.71
EPSS probability
14.13%
Published
2004-09-01
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs