ZeroHour

CVE-2018-16540

CVSS 3.0
7.8 high
EPSS
2%p74
Published
()
Modified
Description

In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files to the builtin PDF14 converter could use a use-after-free in copydevice handling to crash the interpreter or possibly have unspecified other impact.

Vendors
artifexredhatdebiancanonical
Products
ghostscript, openshift container platform, enterprise linux, enterprise linux desktop, enterprise linux server, enterprise linux server aus, enterprise linux server eus, enterprise linux server tus, enterprise linux workstation, debian linux, ubuntu linux
Weakness
CWE-416
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.