CVE-2018-16510
7.8
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD
Description
An issue was discovered in Artifex Ghostscript before 9.24. Incorrect exec stack handling in the "CS" and "SC" PDF primitives could be used by remote attackers able to supply crafted PDFs to crash the interpreter or possibly have unspecified other impact.
Affected (5)
Products: Artifex: Ghostscript, Gpl Ghostscript · Canonical: Ubuntu Linux
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.24 |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 14.04 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 9.26 |
References (12)
Source: cve@mitre.org
Source: cve@mitre.org
Issue TrackingMailing ListPatchThird Party Advisory
Source: cve@mitre.org
Issue TrackingPermissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingMailing ListPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Issue TrackingPermissions Required
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.