Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 10

Количество 10

github логотип

GHSA-9p55-888j-qxrh

почти 3 года назад

In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated. NOTE: it is a documented risk that the IJS server can be specified on a gs command line (the IJS device inherently must execute a command to start the IJS server).

CVSS3: 9.8
EPSS: Низкий
ubuntu логотип

CVE-2023-43115

почти 3 года назад

In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated. NOTE: it is a documented risk that the IJS server can be specified on a gs command line (the IJS device inherently must execute a command to start the IJS server).

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2023-43115

почти 3 года назад

In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated. NOTE: it is a documented risk that the IJS server can be specified on a gs command line (the IJS device inherently must execute a command to start the IJS server).

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2023-43115

почти 3 года назад

In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated. NOTE: it is a documented risk that the IJS server can be specified on a gs command line (the IJS device inherently must execute a command to start the IJS server).

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2023-43115

почти 3 года назад

In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead ...

CVSS3: 8.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:3984-1

почти 3 года назад

Security update for ghostscript

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:3938-1

почти 3 года назад

Security update for ghostscript

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6732

больше 2 лет назад

ELSA-2023-6732: ghostscript security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2023-6265

почти 3 года назад

ELSA-2023-6265: ghostscript security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2023-06329

почти 3 года назад

Уязвимость компонента gdevijs.c набора программного обеспечения обработки документов Ghostscript, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-9p55-888j-qxrh

In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated. NOTE: it is a documented risk that the IJS server can be specified on a gs command line (the IJS device inherently must execute a command to start the IJS server).

CVSS3: 9.8
5%
Низкий
почти 3 года назад
ubuntu логотип
CVE-2023-43115

In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated. NOTE: it is a documented risk that the IJS server can be specified on a gs command line (the IJS device inherently must execute a command to start the IJS server).

CVSS3: 8.8
5%
Низкий
почти 3 года назад
redhat логотип
CVE-2023-43115

In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated. NOTE: it is a documented risk that the IJS server can be specified on a gs command line (the IJS device inherently must execute a command to start the IJS server).

CVSS3: 8.8
5%
Низкий
почти 3 года назад
nvd логотип
CVE-2023-43115

In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated. NOTE: it is a documented risk that the IJS server can be specified on a gs command line (the IJS device inherently must execute a command to start the IJS server).

CVSS3: 8.8
5%
Низкий
почти 3 года назад
debian логотип
CVE-2023-43115

In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead ...

CVSS3: 8.8
5%
Низкий
почти 3 года назад
suse-cvrf логотип
SUSE-SU-2023:3984-1

Security update for ghostscript

5%
Низкий
почти 3 года назад
suse-cvrf логотип
SUSE-SU-2023:3938-1

Security update for ghostscript

5%
Низкий
почти 3 года назад
oracle-oval логотип
ELSA-2023-6732

ELSA-2023-6732: ghostscript security update (IMPORTANT)

5%
Низкий
больше 2 лет назад
oracle-oval логотип
ELSA-2023-6265

ELSA-2023-6265: ghostscript security update (IMPORTANT)

5%
Низкий
почти 3 года назад
fstec логотип
BDU:2023-06329

Уязвимость компонента gdevijs.c набора программного обеспечения обработки документов Ghostscript, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
5%
Низкий
почти 3 года назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.