Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-36773

Опубликовано: 04 фев. 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 9.8

Описание

Artifex Ghostscript before 9.53.0 has an out-of-bounds write and use-after-free in devices/vector/gdevtxtw.c (for txtwrite) because a single character code in a PDF document can map to more than one Unicode code point (e.g., for a ligature).

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

not-affected

esm-infra/bionic

not-affected

esm-infra/focal

not-affected

9.50~dfsg-5ubuntu4.11
esm-infra/xenial

not-affected

focal

not-affected

9.50~dfsg-5ubuntu4.11
jammy

not-affected

9.55.0~dfsg1-0ubuntu5.5
mantic

not-affected

noble

not-affected

trusty

ignored

end of standard support

Показывать по

EPSS

Процентиль: 29%
0.00106
Низкий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
redhat
около 2 лет назад

Artifex Ghostscript before 9.53.0 has an out-of-bounds write and use-after-free in devices/vector/gdevtxtw.c (for txtwrite) because a single character code in a PDF document can map to more than one Unicode code point (e.g., for a ligature).

CVSS3: 9.8
nvd
около 2 лет назад

Artifex Ghostscript before 9.53.0 has an out-of-bounds write and use-after-free in devices/vector/gdevtxtw.c (for txtwrite) because a single character code in a PDF document can map to more than one Unicode code point (e.g., for a ligature).

CVSS3: 9.8
debian
около 2 лет назад

Artifex Ghostscript before 9.53.0 has an out-of-bounds write and use-a ...

suse-cvrf
почти 2 года назад

Security update for ghostscript

suse-cvrf
почти 2 года назад

Security update for ghostscript

EPSS

Процентиль: 29%
0.00106
Низкий

9.8 Critical

CVSS3