Errata ID | 53 |
---|---|
Date | 2017-06-28 |
Source package | ghostscript |
Fixed in version | 9.06~dfsg-2+deb8u5 |
Description | This update addresses the following issues: * Avoid divide by 0 in scan conversion code (CVE-2016-10219) * fix crash with bad data supplied to makeimagedevice (CVE-2016-10220) * use the correct param list enumerator (CVE-2017-5951) * Ensure a device has raster memory, before trying to read it (CVE-2017-7207) * -dSAFER bypass and remote command execution via a "/OutputFile (%pipe%" substring (CVE-2017-8291) |
Additional notes | |
CVE ID | CVE-2016-10219 CVE-2016-10220 CVE-2017-5951 CVE-2017-7207 CVE-2017-8291 |
UCS Bug number | #44569 |