PT-2018-13618 · Artifex+5 · Ghostscript+5

Tavis Ormandy

·

Published

2018-09-05

·

Updated

2024-06-15

·

CVE-2018-16539

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Artifex Ghostscript versions prior to 9.24
Description The issue allows attackers to disclose contents of files on the system that are otherwise not readable by supplying crafted PostScript files, due to incorrect access checking in temp file handling.
Recommendations For versions prior to 9.24, update to version 9.24 or later to resolve the issue.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2344
CESA-2018_3650
CVE-2018-16539
DLA-1504-1
DSA-4288-1
MGASA-2018-0378
OPENSUSE-SU-2018_3036-1
OPENSUSE-SU-2018_3038-1
OPENSUSE-SU-2024:10783-1
RHSA-2018:3650
RHSA-2018_3650
SUSE-SU-2018:2975-1
SUSE-SU-2018:2975-2
SUSE-SU-2018:2975-3
SUSE-SU-2018:2976-1
USN-3768-1

Affected Products

Alt Linux
Centos
Ghostscript
Red Hat
Suse
Ubuntu