CVE-2020-16287
- EPSS 1.87%
- Veröffentlicht 13.08.2020 03:15:12
- Zuletzt bearbeitet 21.11.2024 05:07:05
A buffer overflow vulnerability in lprn_is_black() in contrib/lips4/gdevlprn.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
CVE-2020-16288
- EPSS 1.99%
- Veröffentlicht 13.08.2020 03:15:12
- Zuletzt bearbeitet 21.11.2024 05:07:06
A buffer overflow vulnerability in pj_common_print_page() in devices/gdevpjet.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
CVE-2020-16289
- EPSS 1.99%
- Veröffentlicht 13.08.2020 03:15:12
- Zuletzt bearbeitet 21.11.2024 05:07:06
A buffer overflow vulnerability in cif_print_page() in devices/gdevcif.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
CVE-2020-16290
- EPSS 1.99%
- Veröffentlicht 13.08.2020 03:15:12
- Zuletzt bearbeitet 21.11.2024 05:07:06
A buffer overflow vulnerability in jetp3852_print_page() in devices/gdev3852.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
CVE-2020-16291
- EPSS 2.26%
- Veröffentlicht 13.08.2020 03:15:12
- Zuletzt bearbeitet 04.03.2025 19:15:36
A buffer overflow vulnerability in contrib/gdevdj9.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
CVE-2020-15900
- EPSS 5.19%
- Veröffentlicht 28.07.2020 16:15:12
- Zuletzt bearbeitet 21.11.2024 05:06:24
A memory corruption issue was found in Artifex Ghostscript 9.50 and 9.52. Use of a non-standard PostScript operator can allow overriding of file access controls. The 'rsearch' calculation for the 'post' size resulted in a size that was too large, and...
CVE-2019-14812
- EPSS 2.47%
- Veröffentlicht 27.11.2019 14:15:11
- Zuletzt bearbeitet 21.11.2024 04:27:24
A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable...
CVE-2019-10216
- EPSS 2.3%
- Veröffentlicht 27.11.2019 13:15:10
- Zuletzt bearbeitet 21.11.2024 04:18:40
In ghostscript before version 9.50, the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that coul...
CVE-2019-14869
- EPSS 3.43%
- Veröffentlicht 15.11.2019 12:15:10
- Zuletzt bearbeitet 21.11.2024 04:27:32
A flaw was found in all versions of ghostscript 9.x before 9.50, where the `.charkeys` procedure, where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating ...
CVE-2019-14813
- EPSS 11.4%
- Veröffentlicht 06.09.2019 14:15:15
- Zuletzt bearbeitet 21.11.2024 04:27:24
A flaw was found in ghostscript, versions 9.x before 9.50, in the setsystemparams procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable se...