Количество 12
Количество 12
CVE-2019-10216
In ghostscript before version 9.50, the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges and access files outside of restricted areas.
CVE-2019-10216
In ghostscript before version 9.50, the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges and access files outside of restricted areas.
CVE-2019-10216
In ghostscript before version 9.50, the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges and access files outside of restricted areas.
CVE-2019-10216
In ghostscript before version 9.50, the .buildfont1 procedure did not ...
openSUSE-SU-2019:2160-1
Security update for ghostscript
openSUSE-SU-2019:2139-1
Security update for ghostscript
SUSE-SU-2019:2348-1
Security update for ghostscript
SUSE-SU-2019:2347-1
Security update for ghostscript
GHSA-9xw2-pr37-vhp5
It was found that the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges and access files outside of restricted areas.
ELSA-2019-2465
ELSA-2019-2465: ghostscript security update (IMPORTANT)
ELSA-2019-2462
ELSA-2019-2462: ghostscript security update (IMPORTANT)
BDU:2019-03223
Уязвимость процедуры .buildfont1 программы конвертирования файлов формата PostScript Ghostscript, позволяющая нарушителю повысить свои привилегии и получить доступ к файловой системе
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-10216 In ghostscript before version 9.50, the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges and access files outside of restricted areas. | CVSS3: 7.8 | 1% Низкий | около 6 лет назад | |
CVE-2019-10216 In ghostscript before version 9.50, the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges and access files outside of restricted areas. | CVSS3: 7.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-10216 In ghostscript before version 9.50, the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges and access files outside of restricted areas. | CVSS3: 7.8 | 1% Низкий | около 6 лет назад | |
CVE-2019-10216 In ghostscript before version 9.50, the .buildfont1 procedure did not ... | CVSS3: 7.8 | 1% Низкий | около 6 лет назад | |
openSUSE-SU-2019:2160-1 Security update for ghostscript | 1% Низкий | больше 6 лет назад | ||
openSUSE-SU-2019:2139-1 Security update for ghostscript | 1% Низкий | больше 6 лет назад | ||
SUSE-SU-2019:2348-1 Security update for ghostscript | 1% Низкий | больше 6 лет назад | ||
SUSE-SU-2019:2347-1 Security update for ghostscript | 1% Низкий | больше 6 лет назад | ||
GHSA-9xw2-pr37-vhp5 It was found that the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges and access files outside of restricted areas. | CVSS3: 7.8 | 1% Низкий | больше 3 лет назад | |
ELSA-2019-2465 ELSA-2019-2465: ghostscript security update (IMPORTANT) | больше 6 лет назад | |||
ELSA-2019-2462 ELSA-2019-2462: ghostscript security update (IMPORTANT) | больше 6 лет назад | |||
BDU:2019-03223 Уязвимость процедуры .buildfont1 программы конвертирования файлов формата PostScript Ghostscript, позволяющая нарушителю повысить свои привилегии и получить доступ к файловой системе | CVSS3: 7.3 | 1% Низкий | больше 6 лет назад |
Уязвимостей на страницу