CVE-2020-16299: Divide by Zero
A Division by Zero vulnerability in bj10vprintpage() in contrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/ghostscriptto a version that resolves this vulnerability.Fixed in 9.53.3~dfsg-7+deb11u7Fixed in 9.53.3~dfsg-7+deb11u10Fixed in 10.0.0~dfsg-11+deb12u6Fixed in 10.0.0~dfsg-11+deb12u7Fixed in 10.05.0~dfsg-1 - Upgrade
Upgrade
redhat/ghostscriptto a version that resolves this vulnerability.Fixed in 9.51 - Upgrade
Upgrade
Artifex Software GhostScriptto a version that resolves this vulnerability.Fixed in 9.51
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-16299.
What is the severity of CVE-2020-16299?
The severity of CVE-2020-16299 is medium.
How does CVE-2020-16299 affect Artifex Software GhostScript?
CVE-2020-16299 allows a remote attacker to cause a denial of service via a crafted PDF file in Artifex Software GhostScript.
How can I fix CVE-2020-16299 in Artifex Software GhostScript?
Updating to version 9.51 of Artifex Software GhostScript fixes CVE-2020-16299.
Where can I find more information about CVE-2020-16299?
You can find more information about CVE-2020-16299 at the following references: [link1], [link2], [link3].