Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-11714

Опубликовано: 28 июл. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 7.8

Описание

psi/ztoken.c in Artifex Ghostscript 9.21 mishandles references to the scanner state structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PostScript document, related to an out-of-bounds read in the igc_reloc_struct_ptr function in psi/igc.c.

РелизСтатусПримечание
devel

released

9.21~dfsg+1-0ubuntu3
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [9.10~dfsg-0ubuntu10.10]]
esm-infra/xenial

released

9.18~dfsg~0-0ubuntu2.7
precise/esm

DNE

trusty

released

9.10~dfsg-0ubuntu10.10
trusty/esm

DNE

trusty was released [9.10~dfsg-0ubuntu10.10]
upstream

needed

vivid/ubuntu-core

DNE

xenial

released

9.18~dfsg~0-0ubuntu2.7
zesty

released

9.19~dfsg+1-0ubuntu7.6

Показывать по

EPSS

Процентиль: 56%
0.00335
Низкий

6.8 Medium

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 4
redhat
больше 8 лет назад

psi/ztoken.c in Artifex Ghostscript 9.21 mishandles references to the scanner state structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PostScript document, related to an out-of-bounds read in the igc_reloc_struct_ptr function in psi/igc.c.

CVSS3: 7.8
nvd
больше 8 лет назад

psi/ztoken.c in Artifex Ghostscript 9.21 mishandles references to the scanner state structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PostScript document, related to an out-of-bounds read in the igc_reloc_struct_ptr function in psi/igc.c.

CVSS3: 7.8
debian
больше 8 лет назад

psi/ztoken.c in Artifex Ghostscript 9.21 mishandles references to the ...

CVSS3: 7.8
github
больше 3 лет назад

psi/ztoken.c in Artifex Ghostscript 9.21 mishandles references to the scanner state structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PostScript document, related to an out-of-bounds read in the igc_reloc_struct_ptr function in psi/igc.c.

suse-cvrf
почти 8 лет назад

Security update for ghostscript

EPSS

Процентиль: 56%
0.00335
Низкий

6.8 Medium

CVSS2

7.8 High

CVSS3