Note:
This project will be discontinued after December 13, 2021. [more]
2020-08-13
A buffer overflow vulnerability in epsc_print_page() in devices/gdevepsc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
Products | Ghostscript, Ubuntu_linux, Debian_linux |
Type | Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') (CWE-120) |
First patch | - None (likely due to unavailable code) |
Links |
• https://usn.ubuntu.com/4469-1/
• https://lists.debian.org/debian-lts-announce/2020/08/msg00032.html • https://www.debian.org/security/2020/dsa-4748 • https://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=89f58f1aa95b3482cadf6977da49457194ee5358 • https://security.gentoo.org/glsa/202008-20 |