CVE-2016-10217: Use After Free
The pdf14open function in base/gdevp14.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted file that is mishandled in the color management module.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-10217?
CVE-2016-10217 has a severity rating that indicates it can lead to a denial of service condition.
How do I fix CVE-2016-10217?
To address CVE-2016-10217, it is recommended to update Ghostscript to the latest version available that resolves this vulnerability.
What type of attacks can exploit CVE-2016-10217?
CVE-2016-10217 can be exploited by remote attackers through a crafted file that causes application crashes.
Which software is affected by CVE-2016-10217?
CVE-2016-10217 specifically affects Ghostscript version 9.20.
What are the potential impacts of CVE-2016-10217?
The potential impacts of CVE-2016-10217 include application crashes and denial of service due to mishandled files.