First published: Thu Apr 14 2022(Updated: )
A vulnerability classified as problematic was found in GhostPCL 9.55.0. This vulnerability affects the function chunk_free_object of the file gsmchunk.c. The manipulation with a malicious file leads to a memory corruption. The attack can be initiated remotely but requires user interaction. The exploit has been disclosed to the public as a POC and may be used. It is recommended to apply the patches to fix this issue.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Artifex Ghostpcl | =9.55.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2022-1350.
The severity of CVE-2022-1350 is high with a severity value of 7.8.
GhostPCL 9.55.0 is affected by CVE-2022-1350.
CVE-2022-1350 affects GhostPCL through the function chunk_free_object of the file gsmchunk.c, leading to a memory corruption.
Yes, user interaction is required to exploit CVE-2022-1350.