Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2018-2918

Опубликовано: 15 окт. 2018
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2018-2918: ghostscript security update (IMPORTANT)

[9.07-29.el7_5.2]

  • Fix MediaPosition, ManualFeed and MediaType with pxl devices (bug #1629842)

[9.07-29.el7_5.1]

  • Added security fixes for:
    • CVE-2018-16509 (bug #1621156)
    • CVE-2018-15910 (bug #1621157)
    • CVE-2018-16542 (bug #1621380)

[9.07-29]

  • Fix rare Segmentation fault when converting PDF to PNG (bug #1473337)
  • Raise the default VMThreshold from 1Mb to 8Mb (bug #1479852)

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

ghostscript

9.07-29.el7_5.2

ghostscript-cups

9.07-29.el7_5.2

ghostscript-devel

9.07-29.el7_5.2

ghostscript-doc

9.07-29.el7_5.2

ghostscript-gtk

9.07-29.el7_5.2

Oracle Linux x86_64

ghostscript

9.07-29.el7_5.2

ghostscript-cups

9.07-29.el7_5.2

ghostscript-devel

9.07-29.el7_5.2

ghostscript-doc

9.07-29.el7_5.2

ghostscript-gtk

9.07-29.el7_5.2

Связанные уязвимости

suse-cvrf
около 7 лет назад

Security update for ghostscript-library

CVSS3: 7.8
ubuntu
около 7 лет назад

In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the LockDistillerParams parameter to crash the interpreter or execute code.

CVSS3: 7.3
redhat
около 7 лет назад

In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the LockDistillerParams parameter to crash the interpreter or execute code.

CVSS3: 7.8
nvd
около 7 лет назад

In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the LockDistillerParams parameter to crash the interpreter or execute code.

CVSS3: 7.8
debian
около 7 лет назад

In Artifex Ghostscript before 9.24, attackers able to supply crafted P ...