In Artifex Ghostscript before 9.24, gssetresolution and gsgetresolution allow attackers to have an unspecified impact.
CVSS Details
- CVSS 3.1 Base Score: 7.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade ghostscript | Sep 9, 2018 | Sep 5, 2018 |
| Gentoo Linux | — | Upgrade app-text/ghostscript-gpl. | Nov 26, 2018 | Sep 5, 2018 |
| Ghostscript | — | Upgrade to Ghostscript version 9.24 | Oct 10, 2018 | Sep 5, 2018 |
| Huawei Euleros 2_0_sp2 | — | Upgrade ghostscript-cupsUpgrade ghostscript | Dec 31, 2018 | Sep 5, 2018 |
| Huawei Euleros 2_0_sp3 | — | Upgrade ghostscript-cupsUpgrade ghostscript | Feb 15, 2019 | Sep 5, 2018 |
| Huawei Euleros 2_0_sp5 | — | Upgrade ghostscriptUpgrade ghostscript-cups | Feb 15, 2019 | Sep 5, 2018 |
| Suse | — | Upgrade ghostscript-mini-develUpgrade libspectre1Upgrade ghostscriptUpgrade ghostscript-miniUpgrade libspectre-develUpgrade ghostscript-develUpgrade ghostscript-x11 | Oct 3, 2018 | Sep 5, 2018 |
| Ubuntu | — | Upgrade ghostscriptUpgrade libgs9 | Oct 2, 2018 | Sep 5, 2018 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub