First published: Wed Jun 17 2015(Updated: )
Integer overflow in the gs_heap_alloc_bytes function in base/gsmalloc.c in Ghostscript 9.15 and earlier allows remote attackers to cause a denial of service (crash) via a crafted Postscript (ps) file, as demonstrated by using the ps2pdf command, which triggers an out-of-bounds read or write.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Artifex Afpl Ghostscript | <=9.15 | |
redhat/GhostScript | <9.10 | 9.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.