CVE-2017-7948: Integer Overflow
Integer overflow in the markcurve function in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly have unspecified other impact via a crafted PostScript document.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-7948?
CVE-2017-7948 is considered a high severity vulnerability due to its potential for causing application crashes and denial of service.
How do I fix CVE-2017-7948?
To fix CVE-2017-7948, update Ghostscript to version 9.22 or later, which has patched the vulnerability.
What impact does CVE-2017-7948 have on affected systems?
CVE-2017-7948 can lead to denial of service attacks by causing out-of-bounds write conditions, potentially crashing applications.
Who is affected by CVE-2017-7948?
Users of Artifex Ghostscript version 9.21 are vulnerable to CVE-2017-7948.
What type of attack exploits CVE-2017-7948?
CVE-2017-7948 can be exploited via a crafted PostScript document that triggers the vulnerability.