| Errata ID | 53 |
|---|---|
| Date | 2017-06-28 |
| Source package | ghostscript |
| Fixed in version | 9.06~dfsg-2+deb8u5 |
| Description | This update addresses the following issues: * Avoid divide by 0 in scan conversion code (CVE-2016-10219) * fix crash with bad data supplied to makeimagedevice (CVE-2016-10220) * use the correct param list enumerator (CVE-2017-5951) * Ensure a device has raster memory, before trying to read it (CVE-2017-7207) * -dSAFER bypass and remote command execution via a "/OutputFile (%pipe%" substring (CVE-2017-8291) |
| Additional notes | |
| CVE ID | CVE-2016-10219 CVE-2016-10220 CVE-2017-5951 CVE-2017-7207 CVE-2017-8291 |
| UCS Bug number | #44569 |
