VDB

DEBIAN-CVE-2016-7977

DEBIAN-CVE-2016-7977 PUBLISHED CVSS 5.5 MEDIUM

Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently read arbitrary files via the use of the .libfile operator in a crafted postscript document.

Risk Scores

CVSS v3.0
5.5
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Affected Products

VendorProductVersions
Debian:14ghostscript0, 0, 0
Debian:11ghostscript0, 0, 0
Debian:13ghostscript0, 0, 0
Debian:12ghostscript0, 0, 0

Timeline

  • May 23, 2017 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›