Уязвимость выполнения кода в Artifex Ghostscript при неправильной проверке восстановления привилегий
Описание
В Artifex Ghostscript до версии 9.24 обнаружена уязвимость, связанная с некорректной проверкой восстановления привилегий при обработке исключений типа /invalidaccess. Эта уязвимость позволяет злоумышленникам, предоставляющим специально сформированный код PostScript, выполнять произвольный код с использованием инструкции pipe.
Затронутые версии ПО
- Artifex Ghostscript до версии 9.24
Тип уязвимости
Выполнение произвольного кода
Ссылки
- ExploitMailing ListThird Party Advisory
- Third Party AdvisoryVDB Entry
- Third Party Advisory
- Third Party Advisory
- Issue TrackingPermissions RequiredThird Party Advisory
- Mailing ListThird Party Advisory
- Third Party Advisory
- Third Party Advisory
- Vendor Advisory
- Third Party Advisory
- ExploitThird Party AdvisoryVDB Entry
- ExploitMailing ListThird Party Advisory
Уязвимые конфигурации
Одно из
Одно из
Одно из
EPSS
7.8 High
CVSS3
9.3 Critical
CVSS2
Дефекты
Связанные уязвимости
An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.
An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.
An issue was discovered in Artifex Ghostscript before 9.24. Incorrect ...
An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.
EPSS
7.8 High
CVSS3
9.3 Critical
CVSS2