CVE-2008-0411
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD
Description
Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitrary code via a postscript (.ps) file containing a long Range array in a .seticcspace operator.
Affected (4)
Products: Ghostscript: Ghostscript
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 8.61 |
| Running on/with | Platform Versions |
|---|---|
Mandrakesoft Mandrake Linux | Version 2007.0_x86_64 |
Mandrakesoft Mandrake Linux Corporate Server | Version 3.0 |
Mandrakesoft Mandrakesoft Corporate Server | Version 3.0_x86_64 |
Redhat Desktop | Version 3.0 |
Redhat Enterprise Linux | Version 5 |
Redhat Enterprise Linux Desktop | Version 5 |
Redhat Enterprise Linux Desktop Workstation | Version 5 |
Rpath Rpath Linux | Version 1 |
Suse Novell Linux Pos | Version 9 |
Suse Open Suse | Version 10.2 |
Suse Suse Linux | Version 10.1 |
Suse Suse Open Enterprise Server | Version 0 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 0 |
| Running on/with | Platform Versions |
|---|---|
Debian Debian Linux | Version 3.1 |
References (54)
Source: secalert@redhat.com
Mailing ListThird Party Advisory
Source: secalert@redhat.com
Mailing List
Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Broken LinkVDB Entry
Source: secalert@redhat.com
Broken LinkVDB Entry
Source: secalert@redhat.com
Not Applicable
Source: secalert@redhat.com
Broken Link
Source: secalert@redhat.com
Release NotesThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
URL Repurposed
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Not Applicable
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Release NotesThird Party Advisory
Timeline
No history available yet.