CVE-2018-16510

An issue was discovered in Artifex Ghostscript before 9.24. Incorrect exec stack handling in the "CS" and "SC" PDF primitives could be used by remote attackers able to supply crafted PDFs to crash the interpreter or possibly have unspecified other impact.
Configurations

Configuration 1 (hide)

cpe:2.3:a:artifex:ghostscript:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*

Configuration 3 (hide)

cpe:2.3:a:artifex:gpl_ghostscript:*:*:*:*:*:*:*:*

History

21 Nov 2024, 03:52

Type Values Removed Values Added
References () http://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=ea735ba37dc0fd5f5622d031830b9a559dec1cc9 - () http://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=ea735ba37dc0fd5f5622d031830b9a559dec1cc9 -
References () http://openwall.com/lists/oss-security/2018/08/27/4 - Issue Tracking, Mailing List, Patch, Third Party Advisory () http://openwall.com/lists/oss-security/2018/08/27/4 - Issue Tracking, Mailing List, Patch, Third Party Advisory
References () https://bugs.ghostscript.com/show_bug.cgi?id=699671 - Issue Tracking, Permissions Required () https://bugs.ghostscript.com/show_bug.cgi?id=699671 - Issue Tracking, Permissions Required
References () https://security.gentoo.org/glsa/201811-12 - Third Party Advisory () https://security.gentoo.org/glsa/201811-12 - Third Party Advisory
References () https://usn.ubuntu.com/3768-1/ - Third Party Advisory () https://usn.ubuntu.com/3768-1/ - Third Party Advisory
References () https://usn.ubuntu.com/3773-1/ - Third Party Advisory () https://usn.ubuntu.com/3773-1/ - Third Party Advisory

07 Nov 2023, 02:53

Type Values Removed Values Added
References
  • {'url': 'http://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=ea735ba37dc0fd5f5622d031830b9a559dec1cc9', 'name': 'http://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=ea735ba37dc0fd5f5622d031830b9a559dec1cc9', 'tags': ['Third Party Advisory'], 'refsource': 'MISC'}
  • () http://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=ea735ba37dc0fd5f5622d031830b9a559dec1cc9 -

Information

Published : 2018-09-05 06:29

Updated : 2024-11-21 03:52


NVD link : CVE-2018-16510

Mitre link : CVE-2018-16510

CVE.ORG link : CVE-2018-16510


JSON object : View

Products Affected

canonical

  • ubuntu_linux

artifex

  • ghostscript
  • gpl_ghostscript
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer