Количество 14
Количество 14
GHSA-mq7h-fm69-h6xq
An issue was discovered in Artifex Ghostscript before 10.03.1. contrib/opvp/gdevopvp.c allows arbitrary code execution via a custom Driver library, exploitable via a crafted PostScript document. This occurs because the Driver parameter for opvp (and oprp) devices can have an arbitrary name for a dynamic library; this library is then loaded.

CVE-2024-33871
An issue was discovered in Artifex Ghostscript before 10.03.1. contrib/opvp/gdevopvp.c allows arbitrary code execution via a custom Driver library, exploitable via a crafted PostScript document. This occurs because the Driver parameter for opvp (and oprp) devices can have an arbitrary name for a dynamic library; this library is then loaded.

CVE-2024-33871
An issue was discovered in Artifex Ghostscript before 10.03.1. contrib/opvp/gdevopvp.c allows arbitrary code execution via a custom Driver library, exploitable via a crafted PostScript document. This occurs because the Driver parameter for opvp (and oprp) devices can have an arbitrary name for a dynamic library; this library is then loaded.

CVE-2024-33871
An issue was discovered in Artifex Ghostscript before 10.03.1. contrib/opvp/gdevopvp.c allows arbitrary code execution via a custom Driver library, exploitable via a crafted PostScript document. This occurs because the Driver parameter for opvp (and oprp) devices can have an arbitrary name for a dynamic library; this library is then loaded.
CVE-2024-33871
An issue was discovered in Artifex Ghostscript before 10.03.1. contrib ...

SUSE-SU-2024:2199-1
Security update for ghostscript

SUSE-SU-2024:2198-1
Security update for ghostscript

RLSA-2024:4000
Important: ghostscript security update

RLSA-2024:3999
Important: ghostscript security update
ELSA-2024-4549
ELSA-2024-4549: ghostscript security update (IMPORTANT)
ELSA-2024-4000
ELSA-2024-4000: ghostscript security update (IMPORTANT)
ELSA-2024-3999
ELSA-2024-3999: ghostscript security update (IMPORTANT)

BDU:2024-05064
Уязвимость компонента contrib/opvp/gdevopvp.c интерпретатора набора программного обеспечения для обработки, преобразования и генерации документов Ghostscript, позволяющая нарушителю выполнить произвольный код

ROS-20240923-05
Множественные уязвимости ghostscript
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
GHSA-mq7h-fm69-h6xq An issue was discovered in Artifex Ghostscript before 10.03.1. contrib/opvp/gdevopvp.c allows arbitrary code execution via a custom Driver library, exploitable via a crafted PostScript document. This occurs because the Driver parameter for opvp (and oprp) devices can have an arbitrary name for a dynamic library; this library is then loaded. | CVSS3: 8.8 | 1% Низкий | 12 месяцев назад | |
![]() | CVE-2024-33871 An issue was discovered in Artifex Ghostscript before 10.03.1. contrib/opvp/gdevopvp.c allows arbitrary code execution via a custom Driver library, exploitable via a crafted PostScript document. This occurs because the Driver parameter for opvp (and oprp) devices can have an arbitrary name for a dynamic library; this library is then loaded. | CVSS3: 8.8 | 1% Низкий | 12 месяцев назад |
![]() | CVE-2024-33871 An issue was discovered in Artifex Ghostscript before 10.03.1. contrib/opvp/gdevopvp.c allows arbitrary code execution via a custom Driver library, exploitable via a crafted PostScript document. This occurs because the Driver parameter for opvp (and oprp) devices can have an arbitrary name for a dynamic library; this library is then loaded. | CVSS3: 8.8 | 1% Низкий | около 1 года назад |
![]() | CVE-2024-33871 An issue was discovered in Artifex Ghostscript before 10.03.1. contrib/opvp/gdevopvp.c allows arbitrary code execution via a custom Driver library, exploitable via a crafted PostScript document. This occurs because the Driver parameter for opvp (and oprp) devices can have an arbitrary name for a dynamic library; this library is then loaded. | CVSS3: 8.8 | 1% Низкий | 12 месяцев назад |
CVE-2024-33871 An issue was discovered in Artifex Ghostscript before 10.03.1. contrib ... | CVSS3: 8.8 | 1% Низкий | 12 месяцев назад | |
![]() | SUSE-SU-2024:2199-1 Security update for ghostscript | 1% Низкий | 12 месяцев назад | |
![]() | SUSE-SU-2024:2198-1 Security update for ghostscript | 1% Низкий | 12 месяцев назад | |
![]() | RLSA-2024:4000 Important: ghostscript security update | 1% Низкий | 12 месяцев назад | |
![]() | RLSA-2024:3999 Important: ghostscript security update | 1% Низкий | 12 месяцев назад | |
ELSA-2024-4549 ELSA-2024-4549: ghostscript security update (IMPORTANT) | 9 месяцев назад | |||
ELSA-2024-4000 ELSA-2024-4000: ghostscript security update (IMPORTANT) | около 1 года назад | |||
ELSA-2024-3999 ELSA-2024-3999: ghostscript security update (IMPORTANT) | около 1 года назад | |||
![]() | BDU:2024-05064 Уязвимость компонента contrib/opvp/gdevopvp.c интерпретатора набора программного обеспечения для обработки, преобразования и генерации документов Ghostscript, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.8 | 1% Низкий | около 1 года назад |
![]() | ROS-20240923-05 Множественные уязвимости ghostscript | CVSS3: 8.8 | 9 месяцев назад |
Уязвимостей на страницу