Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-95h7-9j6q-g8q9

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

psi/zfile.c in Artifex Ghostscript before 9.21rc1 permits the status command even if -dSAFER is used, which might allow remote attackers to determine the existence and size of arbitrary files, a similar issue to CVE-2016-7977.

psi/zfile.c in Artifex Ghostscript before 9.21rc1 permits the status command even if -dSAFER is used, which might allow remote attackers to determine the existence and size of arbitrary files, a similar issue to CVE-2016-7977.

EPSS

Процентиль: 67%
0.00538
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 7 лет назад

psi/zfile.c in Artifex Ghostscript before 9.21rc1 permits the status command even if -dSAFER is used, which might allow remote attackers to determine the existence and size of arbitrary files, a similar issue to CVE-2016-7977.

CVSS3: 5.3
redhat
больше 9 лет назад

psi/zfile.c in Artifex Ghostscript before 9.21rc1 permits the status command even if -dSAFER is used, which might allow remote attackers to determine the existence and size of arbitrary files, a similar issue to CVE-2016-7977.

CVSS3: 5.3
nvd
больше 7 лет назад

psi/zfile.c in Artifex Ghostscript before 9.21rc1 permits the status command even if -dSAFER is used, which might allow remote attackers to determine the existence and size of arbitrary files, a similar issue to CVE-2016-7977.

CVSS3: 5.3
debian
больше 7 лет назад

psi/zfile.c in Artifex Ghostscript before 9.21rc1 permits the status c ...

oracle-oval
больше 6 лет назад

ELSA-2019-2281: ghostscript security, bug fix, and enhancement update (LOW)

EPSS

Процентиль: 67%
0.00538
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-200