rpm package
suse/htmldoc&distro=SUSE Package Hub 12 SP1
pkg:rpm/suse/htmldoc&distro=SUSE%20Package%20Hub%2012%20SP1
Vulnerabilities (3)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2021-45949 | Med | 5.5 | < 1.8.28-9.1 | 1.8.28-9.1 | Jan 1, 2022 | Ghostscript GhostPDL 9.50 through 9.54.0 has a heap-based buffer overflow in sampled_data_finish (called from sampled_data_continue and interp). | |
| CVE-2021-45944 | Med | 5.5 | < 1.8.28-9.1 | 1.8.28-9.1 | Jan 1, 2022 | Ghostscript GhostPDL 9.50 through 9.53.3 has a use-after-free in sampled_data_sample (called from sampled_data_continue and interp). | |
| CVE-2021-20308 | Cri | 9.8 | < 1.8.28-6.1 | 1.8.28-6.1 | Apr 5, 2021 | Integer overflow in the htmldoc 1.9.11 and before may allow attackers to execute arbitrary code and cause a denial of service that is similar to CVE-2017-9181. |
- affected < 1.8.28-9.1fixed 1.8.28-9.1
Ghostscript GhostPDL 9.50 through 9.54.0 has a heap-based buffer overflow in sampled_data_finish (called from sampled_data_continue and interp).
- affected < 1.8.28-9.1fixed 1.8.28-9.1
Ghostscript GhostPDL 9.50 through 9.53.3 has a use-after-free in sampled_data_sample (called from sampled_data_continue and interp).
- affected < 1.8.28-6.1fixed 1.8.28-6.1
Integer overflow in the htmldoc 1.9.11 and before may allow attackers to execute arbitrary code and cause a denial of service that is similar to CVE-2017-9181.