Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-8602

Опубликовано: 14 апр. 2017
Источник: debian
EPSS Низкий

Описание

The .sethalftone5 function in psi/zht2.c in Ghostscript before 9.21 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Postscript document that calls .sethalftone5 with an empty operand stack.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ghostscriptfixed9.19~dfsg-3.1package

Примечания

  • http://bugs.ghostscript.com/show_bug.cgi?id=697203

  • https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=f5c7555c30393e64ec1f5ab0dfae5b55b3b3fc78

EPSS

Процентиль: 63%
0.00456
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 8 лет назад

The .sethalftone5 function in psi/zht2.c in Ghostscript before 9.21 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Postscript document that calls .sethalftone5 with an empty operand stack.

CVSS3: 5.8
redhat
около 9 лет назад

The .sethalftone5 function in psi/zht2.c in Ghostscript before 9.21 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Postscript document that calls .sethalftone5 with an empty operand stack.

CVSS3: 7.8
nvd
больше 8 лет назад

The .sethalftone5 function in psi/zht2.c in Ghostscript before 9.21 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Postscript document that calls .sethalftone5 with an empty operand stack.

suse-cvrf
около 9 лет назад

Security update for ghostscript

suse-cvrf
около 9 лет назад

Security update for ghostscript-library

EPSS

Процентиль: 63%
0.00456
Низкий