Mailing the story:

Debian alert: New html2ps packages fix arbitrary code execution

  • Mailing list (Posted by on CST)
  • Story Type: Security; Groups: Debian
The SuSE Security Team found a vulnerability in html2ps, a HTML to PostScript converter, that opened files based on unsanitized input insecurely. This problem can be exploited when html2ps is installed as filter within lrpng and the attacker has previously gained access to the lp account.
What is your name?

What is your E-Mail address?

What is the email address of the recipient?

Add a special note from yourself?