VYPR

rpm package

opensuse/ghostscript&distro=openSUSE Leap 15.2

pkg:rpm/opensuse/ghostscript&distro=openSUSE%20Leap%2015.2

Vulnerabilities (2)

  • CVE-2021-3781Feb 16, 2022
    affected < 9.52-lp152.2.7.1fixed 9.52-lp152.2.7.1

    A trivial sandbox (enabled with the `-dSAFER` option) escape flaw was found in the ghostscript interpreter by injecting a specially crafted pipe command. This flaw allows a specially crafted document to execute arbitrary commands on the system in the context of the ghostscript in

  • CVE-2020-15900Jul 28, 2020
    affected < 9.52-lp152.2.4.1fixed 9.52-lp152.2.4.1

    A memory corruption issue was found in Artifex Ghostscript 9.50 and 9.52. Use of a non-standard PostScript operator can allow overriding of file access controls. The 'rsearch' calculation for the 'post' size resulted in a size that was too large, and could underflow to max uint32