Описание
ELSA-2017-0013: ghostscript security update (MODERATE)
[9.07-20_1]
- Added security fixes for:
- CVE-2013-5653 (bug #1380327)
- CVE-2016-7977 (bug #1380415)
- CVE-2016-7978 (bug #1382300)
- CVE-2016-7979 (bug #1382305)
- CVE-2016-8602 (bug #1383940)
Обновленные пакеты
Oracle Linux 7
Oracle Linux x86_64
ghostscript
9.07-20.el7_3.1
ghostscript-cups
9.07-20.el7_3.1
ghostscript-devel
9.07-20.el7_3.1
ghostscript-doc
9.07-20.el7_3.1
ghostscript-gtk
9.07-20.el7_3.1
Ссылки на источники
Связанные уязвимости
Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently read arbitrary files via the use of the .libfile operator in a crafted postscript document.
Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently read arbitrary files via the use of the .libfile operator in a crafted postscript document.
Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently read arbitrary files via the use of the .libfile operator in a crafted postscript document.