Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-7976

Опубликовано: 07 авг. 2017
Источник: debian

Описание

The PS Interpreter in Ghostscript 9.18 and 9.20 allows remote attackers to execute arbitrary code via crafted userparams.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ghostscriptfixed9.19~dfsg-3.1package

Примечания

  • Upstream bug: http://bugs.ghostscript.com/show_bug.cgi?id=697178

  • Reproducer: https://www.openwall.com/lists/oss-security/2016/09/30/8

  • Patch: https://git.ghostscript.com/?p=ghostpdl.git;h=6d444c273da5499a4cd72f21cb6d4c9a5256807d

  • https://www.openwall.com/lists/oss-security/2016/10/05/7

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 8 лет назад

The PS Interpreter in Ghostscript 9.18 and 9.20 allows remote attackers to execute arbitrary code via crafted userparams.

CVSS3: 7.1
redhat
больше 9 лет назад

The PS Interpreter in Ghostscript 9.18 and 9.20 allows remote attackers to execute arbitrary code via crafted userparams.

CVSS3: 8.8
nvd
больше 8 лет назад

The PS Interpreter in Ghostscript 9.18 and 9.20 allows remote attackers to execute arbitrary code via crafted userparams.

CVSS3: 8.8
github
больше 3 лет назад

The PS Interpreter in Ghostscript 9.18 and 9.20 allows remote attackers to execute arbitrary code via crafted userparams.