9.3
CVE-2009-3743
- EPSS 6.69%
- Published 26.08.2010 21:00:01
- Last modified 11.04.2025 00:51:21
- Source cret@cert.org
- Teams watchlist Login
- Open Login
Off-by-one error in the Ins_MINDEX function in the TrueType bytecode interpreter in Ghostscript before 8.71 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a malformed TrueType font in a document that trigger an integer overflow and a heap-based buffer overflow.
Data is provided by the National Vulnerability Database (NVD)
Artifex ≫ Afpl Ghostscript Version6.0
Artifex ≫ Afpl Ghostscript Version6.01
Artifex ≫ Afpl Ghostscript Version6.50
Artifex ≫ Afpl Ghostscript Version7.00
Artifex ≫ Afpl Ghostscript Version7.03
Artifex ≫ Afpl Ghostscript Version7.04
Artifex ≫ Afpl Ghostscript Version8.00
Artifex ≫ Afpl Ghostscript Version8.11
Artifex ≫ Afpl Ghostscript Version8.12
Artifex ≫ Afpl Ghostscript Version8.13
Artifex ≫ Afpl Ghostscript Version8.14
Artifex ≫ Afpl Ghostscript Version8.50
Artifex ≫ Afpl Ghostscript Version8.51
Artifex ≫ Afpl Ghostscript Version8.52
Artifex ≫ Afpl Ghostscript Version8.53
Artifex ≫ Afpl Ghostscript Version8.54
Artifex ≫ Ghostscript Fonts Version6.0
Artifex ≫ Ghostscript Fonts Version8.11
Artifex ≫ Gpl Ghostscript Version <= 8.70
Artifex ≫ Gpl Ghostscript Version8.01
Artifex ≫ Gpl Ghostscript Version8.15
Artifex ≫ Gpl Ghostscript Version8.50
Artifex ≫ Gpl Ghostscript Version8.51
Artifex ≫ Gpl Ghostscript Version8.54
Artifex ≫ Gpl Ghostscript Version8.56
Artifex ≫ Gpl Ghostscript Version8.57
Artifex ≫ Gpl Ghostscript Version8.60
Artifex ≫ Gpl Ghostscript Version8.61
Artifex ≫ Gpl Ghostscript Version8.62
Artifex ≫ Gpl Ghostscript Version8.63
Artifex ≫ Gpl Ghostscript Version8.64
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 6.69% | 0.903 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|