First published: Mon Dec 22 2008(Updated: )
Buffer overflow in the BaseFont writer module in Ghostscript 8.62, and possibly other versions, allows remote attackers to cause a denial of service (ps2pdf crash) and possibly execute arbitrary code via a crafted Postscript file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/ghostscript | <0:8.15.2-9.4.el5_3.7 | 0:8.15.2-9.4.el5_3.7 |
Artifex Ghostscript | =8.62 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-6679 has been classified as a critical vulnerability due to its potential for remote code execution.
To fix CVE-2008-6679, update Ghostscript to version 8.15.2-9.4.el5_3.7 or later.
CVE-2008-6679 allows attackers to cause denial of service or potentially execute arbitrary code via crafted Postscript files.
CVE-2008-6679 affects Ghostscript version 8.62 and possibly earlier versions.
Yes, CVE-2008-6679 could potentially impact any system using the vulnerable versions of Ghostscript.