[cups.general] postscript exploits possible?

Adam Monsen haircut at gmail.com
Thu May 10 11:53:38 PDT 2007


(silly?) Quick question on using printer drivers with CUPS. Is it
possible that a .PPD file could contain malicious code, and that CUPS
could/would execute that to do something bad to the printer and/or the
operating system?

For instance, if cupsd was running as root, could there be an "rm -rf
/" or something in the .PPD, and if so would CUPS just execute that
and trash the hard drive?

Please forgive my ignorance of CUPS and PostScript.

Thank you,
-Adam

-- 
Adam Monsen





More information about the cups mailing list