Количество 12
Количество 12
CVE-2019-14812
A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or execute arbitrary commands.
CVE-2019-14812
A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or execute arbitrary commands.
CVE-2019-14812
A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or execute arbitrary commands.
CVE-2019-14812
A flaw was found in all ghostscript versions 9.x before 9.50, in the . ...
GHSA-rmmv-j9x6-f2v4
A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or execute arbitrary commands.
BDU:2019-03226
Уязвимость процедуры .setuserparams2 программы конвертирования файлов формата PostScript Ghostscript, позволяющая нарушителю выполнить произвольные команды или получить доступ к файловой системе
ELSA-2019-2591
ELSA-2019-2591: ghostscript security update (IMPORTANT)
ELSA-2019-2586
ELSA-2019-2586: ghostscript security update (IMPORTANT)
openSUSE-SU-2019:2223-1
Security update for ghostscript
openSUSE-SU-2019:2222-1
Security update for ghostscript
SUSE-SU-2019:2478-1
Security update for ghostscript
SUSE-SU-2019:2460-1
Security update for ghostscript
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2019-14812 A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or execute arbitrary commands. | CVSS3: 7.8 | 1% Низкий | около 6 лет назад | |
CVE-2019-14812 A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or execute arbitrary commands. | CVSS3: 7.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-14812 A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or execute arbitrary commands. | CVSS3: 7.8 | 1% Низкий | около 6 лет назад | |
CVE-2019-14812 A flaw was found in all ghostscript versions 9.x before 9.50, in the . ... | CVSS3: 7.8 | 1% Низкий | около 6 лет назад | |
GHSA-rmmv-j9x6-f2v4 A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or execute arbitrary commands. | 1% Низкий | больше 3 лет назад | ||
BDU:2019-03226 Уязвимость процедуры .setuserparams2 программы конвертирования файлов формата PostScript Ghostscript, позволяющая нарушителю выполнить произвольные команды или получить доступ к файловой системе | CVSS3: 7.3 | 1% Низкий | больше 6 лет назад | |
ELSA-2019-2591 ELSA-2019-2591: ghostscript security update (IMPORTANT) | больше 6 лет назад | |||
ELSA-2019-2586 ELSA-2019-2586: ghostscript security update (IMPORTANT) | больше 6 лет назад | |||
openSUSE-SU-2019:2223-1 Security update for ghostscript | больше 6 лет назад | |||
openSUSE-SU-2019:2222-1 Security update for ghostscript | больше 6 лет назад | |||
SUSE-SU-2019:2478-1 Security update for ghostscript | больше 6 лет назад | |||
SUSE-SU-2019:2460-1 Security update for ghostscript | больше 6 лет назад |
Уязвимостей на страницу