ZeroHour

CVE-2018-15910

CVSS 3.0
7.8 high
EPSS
3%p87
Published
()
Modified
Description

In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the LockDistillerParams parameter to crash the interpreter or execute code.

Vendors
debiancanonicalartifexredhatpulsesecure
Products
debian linux, ubuntu linux, ghostscript, enterprise linux desktop, enterprise linux server, enterprise linux server eus, enterprise linux workstation, gpl ghostscript, pulse connect secure
Weakness
CWE-704
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.