A2PS
5 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for A2PS, a product in the oss libraries space. Use it to gauge the current risk picture and drill into individual advisories.
A2PS CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 5 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical1
- High1
- Medium1
- Low2
Latest CVEs
The 5 most recently published vulnerabilities affecting A2PS.
- CVE-2015-8107Format string vulnerability in GNU a2ps 4.14 allows remote attackers to execute arbitrary code.7.8
- CVE-2001-1593The tempname_ensure function in lib/routines.h in a2ps 4.14 and earlier, as used by the spy_user function and possibly other functions, allows local users to modify arbitrary files via a symlink at...2.1
- CVE-2014-0466The fixps script in a2ps 4.14 does not use the -dSAFER option when executing gs, which allows context-dependent attackers to delete arbitrary files or execute arbitrary commands via a crafted PostS...6.8
- CVE-2004-1377The (1) fixps (aka fixps.in) and (2) psmandup (aka psmandup.in) scripts in a2ps before 4.13 allow local users to overwrite arbitrary files via a symlink attack on temporary files.2.1
- CVE-2004-1170a2ps 4.13 allows remote attackers to execute arbitrary commands via shell metacharacters in the filename.10.0
Product grouping is registry-driven, with AI assist and human review. How it works