Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-98rm-3v6h-p8j6

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.

EPSS

Процентиль: 100%
0.91758
Критический

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 7 лет назад

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.

CVSS3: 7.3
redhat
больше 7 лет назад

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.

CVSS3: 7.8
nvd
больше 7 лет назад

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.

CVSS3: 7.8
debian
больше 7 лет назад

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect ...

oracle-oval
около 7 лет назад

ELSA-2018-3760: ghostscript security update (IMPORTANT)

EPSS

Процентиль: 100%
0.91758
Критический

7.8 High

CVSS3