ISOMAN

CVE

CVE-2018-17183

Artifex Ghostscript before 9.25 allowed a user-writable error exception table, which could be used by remote attackers able to supply crafted PostScript to potentially overwrite or replace error handlers to inject code.

Severity
HIGH
CVSS
7.8
Published
Modified

Linked Releases

References

  1. http://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=fb713b3818b52d8a6cf62c951eba2e1795ff9624
  2. https://access.redhat.com/errata/RHSA-2018:3834
  3. https://bugs.ghostscript.com/show_bug.cgi?id=699708
  4. https://lists.debian.org/debian-lts-announce/2018/09/msg00038.html
  5. https://usn.ubuntu.com/3773-1/
  6. http://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=fb713b3818b52d8a6cf62c951eba2e1795ff9624
  7. https://access.redhat.com/errata/RHSA-2018:3834
  8. https://bugs.ghostscript.com/show_bug.cgi?id=699708
  9. https://lists.debian.org/debian-lts-announce/2018/09/msg00038.html
  10. https://usn.ubuntu.com/3773-1/