CVE-2010-1869
Publication date 12 May 2010
Last updated 24 July 2024
Ubuntu priority
Stack-based buffer overflow in the parser function in GhostScript 8.70 and 8.64 allows context-dependent attackers to execute arbitrary code via a crafted PostScript file.
Status
Package | Ubuntu Release | Status |
---|---|---|
ghostscript | ||
gs-afpl | ||
gs-esp | ||
gs-gpl | ||
Notes
mdeslaur
reproducer doesn't appear to work on dapper's gs-esp stack protector makes this a DoS on karmic
Patch details
Package | Patch details |
---|---|
ghostscript |
References
Related Ubuntu Security Notices (USN)
- USN-961-1
- Ghostscript vulnerabilities
- 13 July 2010