CVE-2018-16539
Summary
| CVE | CVE-2018-16539 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-09-05 18:29:00 UTC |
| Updated | 2023-11-07 02:53:00 UTC |
| Description | In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect access checking in temp file handling to disclose contents of files on the system otherwise not readable. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| git.ghostscript.com Git - ghostpdl.git/commit |
MISC |
git.ghostscript.com |
Patch, Vendor Advisory |
| USN-3768-1: Ghostscript vulnerabilities | Ubuntu security notices |
UBUNTU |
usn.ubuntu.com |
Third Party Advisory |
| Red Hat Customer Portal |
REDHAT |
access.redhat.com |
Third Party Advisory |
| Access Denied |
MISC |
bugs.ghostscript.com |
Issue Tracking, Permissions Required, Vendor Advisory |
| Ghostscript security vulnerabilities resolved | Artifex |
MISC |
www.artifex.com |
Patch, Vendor Advisory |
| GPL Ghostscript: Multiple vulnerabilities (GLSA 201811-12) — Gentoo security |
GENTOO |
security.gentoo.org |
Third Party Advisory |
| Debian -- Security Information -- DSA-4288-1 ghostscript |
DEBIAN |
www.debian.org |
Third Party Advisory |
| [SECURITY] [DLA 1504-1] ghostscript security update |
MLIST |
lists.debian.org |
Mailing List, Third Party Advisory |
| git.ghostscript.com Git - ghostpdl.git/commit |
|
git.ghostscript.com |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 710304 Gentoo Linux GPL Ghostscript Multiple Vulnerabilities (GLSA 201811-12)