UBUNTU-CVE-2017-15652
Dashboard / Vulnerabilities / UBUNTU-CVE-2017-15652
Summary:
Details: Artifex Ghostscript 9.22 is affected by: Obtain Information. The impact is: obtain sensitive information. The component is: affected source code file, affected function, affected executable, affected libga (imagemagick used that). The attack vector is: Someone must open a postscript file though ghostscript. Because of imagemagick also use libga, so it was affected as well.
References: https://ubuntu.com/security/CVE-2017-15652, http://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=2fc463d0e, https://bugs.ghostscript.com/show_bug.cgi?id=698676, https://www.cve.org/CVERecord?id=CVE-2017-15652
Affected packages
Package
Name: ghostscript
Purl: pkg:deb/ubuntu/[email protected]~dfsg+0-0ubuntu0.18.04.9?arch=source&distro=bionic
Affected ranges
Type: ECOSYSTEM
Events:
