vulnerability

Ubuntu: USN-4469-1 (CVE-2020-16303): Ghostscript vulnerabilities

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Aug 13, 2020
Added
Aug 25, 2020
Modified
Mar 22, 2023

Description

A use-after-free vulnerability in xps_finish_image_path() in devices/vector/gdevxps.c of Artifex Software GhostScript v9.50 allows a remote attacker to escalate privileges via a crafted PDF file. This is fixed in v9.51.

Solution(s)

ubuntu-upgrade-ghostscriptubuntu-upgrade-libgs9
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.