← Back

CVE-2008-0411

nvd nist
Published: Feb 28, 2008Modified: Apr 23, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitrary code via a postscript (.ps) file containing a long Range array in a .seticcspace operator.

Affected (4)

1 product
Ghostscript
Configuration A
1 vulnerable · 32 platform
Vulnerable SoftwareAffected Versions
Up to 8.61
Running on/withPlatform Versions
Mandrakesoft
Mandrake Linux
Version 2007.0_x86_64
Mandrakesoft
Mandrake Linux
Version 2007.1
Mandrakesoft
Mandrake Linux
Version 2007.1
Mandrakesoft
Mandrake Linux
Version 2007
Mandrakesoft
Mandrake Linux
Version 2008.0
Mandrakesoft
Mandrake Linux
Version 2008.0
Mandrakesoft
Mandrake Linux Corporate Server
Version 3.0
Mandrakesoft
Mandrake Linux Corporate Server
Version 4.0
Mandrakesoft
Mandrakesoft Corporate Server
Version 3.0_x86_64
Mandrakesoft
Mandrakesoft Corporate Server
Version 4.0_x86_64
Redhat
Desktop
Version 3.0
Redhat
Desktop
Version 4.0
Redhat
Enterprise Linux
Version 5
Redhat
Enterprise Linux
Version as_3
Redhat
Enterprise Linux
Version as_4
Redhat
Enterprise Linux
Version es_3
Redhat
Enterprise Linux
Version es_4
Redhat
Enterprise Linux
Version ws_3
Redhat
Enterprise Linux
Version ws_4
Redhat
Enterprise Linux Desktop
Version 5
Redhat
Enterprise Linux Desktop Workstation
Version 5
Rpath
Rpath Linux
Version 1
Suse
Novell Linux Pos
Version 9
Suse
Open Suse
Version 10.2
Suse
Open Suse
Version 10.3
Suse
Suse Linux
Version 10.1
Suse
Suse Linux
Version 10.1
Suse
Suse Linux
Version 10.1
Suse
Suse Linux
Version 10 sp1
Suse
Suse Linux
Version 10 sp1
Suse
Suse Linux
Version 9.0
Suse
Suse Open Enterprise Server
Version 0
Configuration B
3 vulnerable · 26 platform
Vulnerable SoftwareAffected Versions
Ghostscript
Version 0
Version 8.0.1
Version 8.15
Running on/withPlatform Versions
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 3.1
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0
Debian
Debian Linux
Version 4.0

References (54)

Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: secalert@redhat.com
Exploit
Source: secalert@redhat.com
URL Repurposed
Source: secalert@redhat.com
URL Repurposed
Source: secalert@redhat.com
URL Repurposed
Source: secalert@redhat.com
URL Repurposed
Source: secalert@redhat.com
URL Repurposed
Source: secalert@redhat.com
URL Repurposed
Source: secalert@redhat.com
URL Repurposed
Source: secalert@redhat.com
URL Repurposed
Source: secalert@redhat.com
URL Repurposed
Source: secalert@redhat.com
URL Repurposed
Source: secalert@redhat.com
Broken Link
Source: secalert@redhat.com
Patch
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
URL Repurposed
Source: secalert@redhat.com
Broken LinkVDB Entry
Source: secalert@redhat.com
Broken LinkVDB Entry
Source: secalert@redhat.com
Third Party AdvisoryVDB Entry
Source: secalert@redhat.com
Third Party AdvisoryVDB Entry
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Not Applicable
Source: secalert@redhat.com
Broken Link
Source: secalert@redhat.com
Release NotesThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Not Applicable
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesThird Party Advisory

Timeline

No history available yet.