CVE-2013-1444: Debian TXT2MAN

Low severity, CVSS 3.3. EPSS: 0.3% chance of exploitation in the next 30 days.

A certain Debian patch for txt2man 1.5.5, as used in txt2man 1.5.5-2, 1.5.5-4, and others, allows local users to overwrite arbitrary files via a symlink attack on /tmp/2222.

Affected products

  • Debian TXT2MAN: version 1.5.5-2 only; version 1.5.5-4 only
  • Marc Vertes TXT2MAN: version 1.5.5 only

Published 2013-09-30. Last modified 2026-06-16.