Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-16509

Опубликовано: 05 сент. 2018
Источник: ubuntu
Приоритет: medium
EPSS Критический
CVSS2: 9.3
CVSS3: 7.8

Описание

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.

РелизСтатусПримечание
bionic

released

9.22~dfsg+1-0ubuntu1.2
devel

released

9.25~dfsg+1-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [9.10~dfsg-0ubuntu10.13]]
esm-infra/bionic

released

9.22~dfsg+1-0ubuntu1.2
esm-infra/xenial

released

9.18~dfsg~0-0ubuntu2.9
precise/esm

DNE

trusty

released

9.10~dfsg-0ubuntu10.13
trusty/esm

DNE

trusty was released [9.10~dfsg-0ubuntu10.13]
upstream

needs-triage

xenial

released

9.18~dfsg~0-0ubuntu2.9

Показывать по

EPSS

Процентиль: 100%
0.91715
Критический

9.3 Critical

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.3
redhat
около 7 лет назад

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.

CVSS3: 7.8
nvd
около 7 лет назад

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.

CVSS3: 7.8
debian
около 7 лет назад

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect ...

CVSS3: 7.8
github
больше 3 лет назад

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction.

oracle-oval
почти 7 лет назад

ELSA-2018-3760: ghostscript security update (IMPORTANT)

EPSS

Процентиль: 100%
0.91715
Критический

9.3 Critical

CVSS2

7.8 High

CVSS3