Gpl Ghostscript
Artifex · 16 CVEs
ghostscript: 1Policy operator allows a sandbox protection bypass
Oct 19, 2018
ghostscript: setcolor missing type check (699655)
Sep 5, 2018
ghostscript: Incorrect exec stack handling in the "CS" and "SC" PDF primitives (699671)
Sep 5, 2018
ghostscript: /invalidaccess bypass after failed restore (699654)
Sep 5, 2018
ghostscript: Uninitialized memory access in the aesdecode operator (699665)
Aug 28, 2018
ghostscript: LockDistillerParams type confusion (699656)
Aug 27, 2018
ghostscript: shading_param incomplete type checking (699660)
Aug 27, 2018
ghostscript: Heap-buffer overflow due to Integer overflow in jbig2_image_new function
Apr 23, 2018
libjpeg: information leak (read of uninitialized memory)
Nov 15, 2013
Heap-based buffer overflow in gdevwpr2.c in Ghostscript 9.04, when processing the OutputFile device parameter, allows u…
Sep 6, 2012
ghostscript: glyph data access improper input validation
Oct 22, 2010
ghostscript: TrueType bytecode intepreter integer overflow or wraparound
Aug 26, 2010
ghostscript: gs_init.ps searched in current directory despite -P-
Jul 22, 2010
ghostscript: long name buffer overflow (GS 8.64)
Jul 22, 2010
ghostscript: internal stack overflow due to recursive calls
May 19, 2010
ghostscript: PS parser buffer overflow in token scanner
May 12, 2010
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2018-18284 | ghostscript: 1Policy operator allows a sandbox protection bypass | HIGH | 16.29% | Oct 19, 2018 |
| CVE-2018-16513 | ghostscript: setcolor missing type check (699655) | HIGH | 1.50% | Sep 5, 2018 |
| CVE-2018-16510 | ghostscript: Incorrect exec stack handling in the "CS" and "SC" PDF primitives (699671) | HIGH | 1.75% | Sep 5, 2018 |
| CVE-2018-16509 | ghostscript: /invalidaccess bypass after failed restore (699654) | HIGH | 92.50% | Sep 5, 2018 |
| CVE-2018-15911 | ghostscript: Uninitialized memory access in the aesdecode operator (699665) | HIGH | 3.04% | Aug 28, 2018 |
| CVE-2018-15910 | ghostscript: LockDistillerParams type confusion (699656) | HIGH | 3.04% | Aug 27, 2018 |
| CVE-2018-15909 | ghostscript: shading_param incomplete type checking (699660) | HIGH | 3.02% | Aug 27, 2018 |
| CVE-2016-9601 | ghostscript: Heap-buffer overflow due to Integer overflow in jbig2_image_new function | MEDIUM | 1.71% | Apr 23, 2018 |
| CVE-2013-6629 | libjpeg: information leak (read of uninitialized memory) | MEDIUM | 9.73% | Nov 15, 2013 |
| CVE-2012-4875 | Heap-based buffer overflow in gdevwpr2.c in Ghostscript 9.04, when processing the OutputFile device parameter, allows user-assisted remote attackers to execute… | HIGH | 4.27% | Sep 6, 2012 |
| CVE-2010-4054 | ghostscript: glyph data access improper input validation | MEDIUM | 2.61% | Oct 22, 2010 |
| CVE-2009-3743 | ghostscript: TrueType bytecode intepreter integer overflow or wraparound | HIGH | 6.75% | Aug 26, 2010 |
| CVE-2010-2055 | ghostscript: gs_init.ps searched in current directory despite -P- | HIGH | 0.51% | Jul 22, 2010 |
| CVE-2009-4897 | ghostscript: long name buffer overflow (GS 8.64) | HIGH | 6.63% | Jul 22, 2010 |
| CVE-2010-1628 | ghostscript: internal stack overflow due to recursive calls | HIGH | 4.04% | May 19, 2010 |
| CVE-2010-1869 | ghostscript: PS parser buffer overflow in token scanner | HIGH | 9.23% | May 12, 2010 |
Showing 1 to 16 of 16 CVEs