Описание
The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PostScript document. This is related to a lack of an integer overflow check in base/gsalloc.c.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 9.21~dfsg+1-0ubuntu3 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [9.10~dfsg-0ubuntu10.10]] |
| esm-infra/xenial | released | 9.18~dfsg~0-0ubuntu2.7 |
| precise/esm | DNE | |
| trusty | released | 9.10~dfsg-0ubuntu10.10 |
| trusty/esm | DNE | trusty was released [9.10~dfsg-0ubuntu10.10] |
| upstream | needed | |
| vivid/ubuntu-core | DNE | |
| xenial | released | 9.18~dfsg~0-0ubuntu2.7 |
| zesty | released | 9.19~dfsg+1-0ubuntu7.6 |
Показывать по
EPSS
6.8 Medium
CVSS2
7.8 High
CVSS3
Связанные уязвимости
The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PostScript document. This is related to a lack of an integer overflow check in base/gsalloc.c.
The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PostScript document. This is related to a lack of an integer overflow check in base/gsalloc.c.
The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript ...
The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PostScript document. This is related to a lack of an integer overflow check in base/gsalloc.c.
EPSS
6.8 Medium
CVSS2
7.8 High
CVSS3