VDB
BDU%3A2018-01519
BDU%3A2018-01519
PUBLISHED
CVSS 6.900000095367432 MEDIUM
Уязвимость компонента Sandbox Protection Mechanism набора программного обеспечения для обработки, преобразования и генерации документов Ghostscript, позволяющая нарушителю обойти защитный механизм песочницы и выполнить произвольный код
Risk Scores
CVSS 2.0
6.900000095367432
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Canonical Ltd., Сообщество свободного программного обеспечения, Artifex Software Inc., ООО «РусБИТех-Астра» | Ubuntu, Debian GNU/Linux, Ghostscript, Astra Linux Special Edition (запись в едином реестре российских программ №369) |
Timeline
- Dec 20, 2018 CVE Published
- Sep 30, 2024 CVE Updated
References
- https://cxsecurity.com/cveshow/CVE-2018-17961/ url
- http://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=a54c9e61e7d0 url
- http://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=a5a9bf8c6a63 url
- http://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=a6807394bd94 url
- http://www.openwall.com/lists/oss-security/2018/10/09/4 url
- https://bugs.chromium.org/p/project-zero/issues/detail?id=1682&desc=2 url
- https://bugs.ghostscript.com/show_bug.cgi?id=699816 url
- https://www.exploit-db.com/exploits/45573/ url
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20220829SE16 url
- https://usn.ubuntu.com/3803-1/ advisory
- https://wiki.astralinux.ru/pages/viewpage.action?pageId=44892734 advisory