CVE-2020-16306 PUBLISHED

A null pointer dereference vulnerability in devices/gdevtsep.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted postscript file. This is fixed in v9.51.

EPSS 1.77% · 82.5th percentile

Risk Scores

EPSS Score
1.77%
82.5th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSghostscript9.50~dfsg-5ubuntu4.1, 9.50~dfsg-5ubuntu4, 9.50~dfsg-5ubuntu3
Ubuntu:16.04:LTSghostscript9.18~dfsg~0-0ubuntu2.6, 9.18~dfsg~0-0ubuntu2.7, 9.18~dfsg~0-0ubuntu2.8
Ubuntu:18.04:LTSghostscript9.26~dfsg+0-0ubuntu0.18.04.3, 9.26~dfsg+0-0ubuntu0.18.04.4, 9.26~dfsg+0-0ubuntu0.18.04.5

Timeline

References

Open in Interactive Console →