Описание
A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. This issue only affects the ghostscript package as shipped with Red Hat Enterprise Linux 8.
Отчет
CVE-2020-16305 affected Red Hat Enterprise Linux 6, 7, and 8, but was only intended to be fixed in Red Hat Enterprise Linux 8. (https://access.redhat.com/errata/RHSA-2021:1852 (Red Hat Enterprise Linux 8.4) That errata provided updates for ghostscript packages, but did not include fixes for CVE-2020-16305 as it was claimed. For more details about the original security issue CVE-2020-16305, refer to the CVE page: https://access.redhat.com/security/cve/CVE-2020-16305.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | ghostscript | Not affected | ||
Red Hat Enterprise Linux 7 | ghostscript | Not affected | ||
Red Hat Enterprise Linux 8 | gimp:flatpak/ghostscript | Affected | ||
Red Hat Enterprise Linux 9 | ghostscript | Not affected | ||
Red Hat Enterprise Linux 8 | ghostscript | Fixed | RHSA-2023:7053 | 14.11.2023 |
Показывать по
Дополнительная информация
Статус:
EPSS
5.5 Medium
CVSS3
Связанные уязвимости
A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. This issue only affects the ghostscript package as shipped with Red Hat Enterprise Linux 8.
A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. This issue only affects the ghostscript package as shipped with Red Hat Enterprise Linux 8.
A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostsc ...
A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. This issue only affects the ghostscript package as shipped with Red Hat Enterprise Linux 8.
Уязвимость набора программного обеспечения для обработки, преобразования и генерации документов Ghostscript для операционной системы Red Hat Enterprise Linux, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
5.5 Medium
CVSS3