CVE-2017-8291: Artifex Ghostscript Type Confusion Vulnerability
Artifex Ghostscript allows -dSAFER bypass and remote command execution via .rsdparams type confusion with a "/OutputFile.
Other sources
Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and remote command execution via .rsdparams type confusion with a "/OutputFile (%pipe%" substring in a crafted .eps document that is an input to the gs program, as exploited in the wild in April 2017.
It was reported that Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and remote command execution via a "/OutputFile (%pipe%" substring in a crafted .eps document that is an input to the gs program.
Upstream issue:
https://bugs.ghostscript.com/showbug.cgi?id=697808
— Red Hat
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8291?
CVE-2017-8291 has a high severity rating due to the potential for remote command execution.
How do I fix CVE-2017-8291?
To fix CVE-2017-8291, update your Artifex Ghostscript to version 9.22 or later, which addresses the vulnerability.
What versions of Ghostscript are affected by CVE-2017-8291?
CVE-2017-8291 affects Artifex Ghostscript versions up to and including 9.21.
Can CVE-2017-8291 be exploited remotely?
Yes, CVE-2017-8291 can be exploited remotely, allowing attackers to execute arbitrary commands.
What is the impact of exploiting CVE-2017-8291?
Exploitation of CVE-2017-8291 can lead to unauthorized system access and control by an attacker.