CVE-2020-16307 PUBLISHED

A null pointer dereference vulnerability in devices/vector/gdevtxtw.c and psi/zbfont.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted postscript file. This is fixed in v9.51.

EPSS 1.77% · 82.5th percentile

Risk Scores

EPSS Score
1.77%
82.5th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSghostscript0, 9.50~dfsg-5ubuntu4.1, 9.50~dfsg-5ubuntu4
Ubuntu:18.04:LTSghostscript9.25~dfsg+1-0ubuntu0.18.04.2, 0, 9.21~dfsg+1-0ubuntu3
Ubuntu:16.04:LTSghostscript9.16~dfsg~0-0ubuntu3, 9.18~dfsg~0-0ubuntu2.6, 9.18~dfsg~0-0ubuntu2.4

Timeline

References

Open in Interactive Console →