PT-2020-5564 · Artifex+7 · Ghostscript+7
Published
2020-08-13
·
Updated
2022-08-24
·
CVE-2020-16301
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
GhostScript versions 9.50
Description
A buffer overflow issue in the
okiibm print page1() function in devices/gdevokii.c allows a remote attacker to cause a denial of service via a crafted PDF file.Recommendations
For GhostScript version 9.50, update to version 9.51 to resolve the issue. As a temporary workaround, consider restricting the use of the
okiibm print page1() function until a patch is available. Avoid using crafted PDF files that could exploit the buffer overflow vulnerability in the affected function.Exploit
Fix
DoS
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Almalinux
Centos
Ghostscript
Linuxmint
Red Hat
Rocky Linux
Ubuntu