ALPINE-CVE-2018-18073 PUBLISHED CVSS 6.300000190734863 MEDIUM

Artifex Ghostscript allows attackers to bypass a sandbox protection mechanism by leveraging exposure of system operators in the saved execution stack in an error object.

Risk Scores

CVSS v3.1
6.300000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:N/A:N

Affected Products

VendorProductVersions
Alpine:v3.6ghostscript9.20-r0, 9.25-r0, 9.24-r0
Alpine:v3.10ghostscript9.25-r0, 0, 8.64-r0
Alpine:v3.13ghostscript8.71-r3, 9.25-r0, 9.24-r0
Alpine:v3.14ghostscript9.16-r2, 9.18-r0, 9.19-r0
Alpine:v3.21ghostscript9.19-r1, 9.25-r0, 9.24-r0
Alpine:v3.15ghostscript9.25-r0, 9.24-r0, 9.22-r0
Alpine:v3.16ghostscript9.18-r0, 9.16-r2, 9.18-r0
Alpine:v3.9ghostscript9.16-r1, 9.16-r2, 9.18-r0
Alpine:v3.11ghostscript9.21-r2, 0, 8.64-r0
Alpine:v3.5ghostscript0, 9.25-r0, 9.24-r0
Alpine:v3.8ghostscript9.16-r2, 9.25-r0, 9.24-r0
Alpine:v3.22ghostscript9.20-r0, 9.19-r1, 9.19-r0
Alpine:v3.18ghostscript8.71-r2, 9.19-r0, 0
Alpine:v3.23ghostscript9.06-r0, 9.25-r0, 9.24-r0
Alpine:v3.20ghostscript0, 9.25-r0, 9.24-r0
Alpine:v3.17ghostscript9.06-r0, 9.05-r1, 9.05-r0
Alpine:v3.19ghostscript9.06-r1, 9.05-r1, 9.05-r0
Alpine:v3.7ghostscript9.16-r0, 9.24-r0, 9.22-r0
Alpine:v3.12ghostscript9.15-r1, 9.16-r1, 9.16-r2

Timeline

References

Open in Interactive Console →