Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-15652

Опубликовано: 23 мая 2019
Источник: debian

Описание

Artifex Ghostscript 9.22 is affected by: Obtain Information. The impact is: obtain sensitive information. The component is: affected source code file, affected function, affected executable, affected libga (imagemagick used that). The attack vector is: Someone must open a postscript file though ghostscript. Because of imagemagick also use libga, so it was affected as well.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ghostscriptfixed9.25~dfsg-1package
ghostscriptfixed9.25~dfsg-0+deb9u1stretchpackage
ghostscriptfixed9.26a~dfsg-0+deb8u1jessiepackage

Примечания

  • https://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=2fc463d0e (ghostpdl-9.23rc1)

  • https://bugs.ghostscript.com/show_bug.cgi?id=698676

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 6 лет назад

Artifex Ghostscript 9.22 is affected by: Obtain Information. The impact is: obtain sensitive information. The component is: affected source code file, affected function, affected executable, affected libga (imagemagick used that). The attack vector is: Someone must open a postscript file though ghostscript. Because of imagemagick also use libga, so it was affected as well.

CVSS3: 5.5
nvd
больше 6 лет назад

Artifex Ghostscript 9.22 is affected by: Obtain Information. The impact is: obtain sensitive information. The component is: affected source code file, affected function, affected executable, affected libga (imagemagick used that). The attack vector is: Someone must open a postscript file though ghostscript. Because of imagemagick also use libga, so it was affected as well.

github
больше 3 лет назад

Artifex Ghostscript 9.22 is affected by: Obtain Information. The impact is: obtain sensitive information. The component is: affected source code file, affected function, affected executable, affected libga (imagemagick used that). The attack vector is: Someone must open a postscript file though ghostscript. Because of imagemagick also use libga, so it was affected as well.