[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

SUSE-SU-2017:1138-1 -- SLES ghostscript

ID: oval:org.secpod.oval:def:89044462Date: (C)2021-06-30   (M)2021-11-15
Class: PATCHFamily: unix




This update for ghostscript fixes the following security vulnerabilities: CVE-2017-8291: A remote command execution and a -dSAFER bypass via a crafted .eps document were exploited in the wild. CVE-2016-9601: An integer overflow in the bundled jbig2dec library could have been misused to cause a Denial-of-Service. CVE-2016-10220: A NULL pointer dereference in the PDF Transparency module allowed remote attackers to cause a Denial-of-Service. CVE-2017-5951: A NULL pointer dereference allowed remote attackers to cause a denial of service via a crafted PostScript document. CVE-2017-7207: A NULL pointer dereference allowed remote attackers to cause a denial of service via a crafted PostScript document

Platform:
SUSE Linux Enterprise Server 12 SP2
Product:
ghostscript
Reference:
SUSE-SU-2017:1138-1
CVE-2016-10220
CVE-2016-9601
CVE-2017-5951
CVE-2017-7207
CVE-2017-8291
CVE    5
CVE-2016-10220
CVE-2016-9601
CVE-2017-5951
CVE-2017-7207
...

© SecPod Technologies