Lucene search

K
mageiaGentoo FoundationMGASA-2015-0308
HistoryAug 10, 2015 - 5:31 p.m.

Updated ghostscript package fixes security vulnerability

2015-08-1017:31:41
Gentoo Foundation
advisories.mageia.org
18

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.014

Percentile

86.5%

GhostScript is vulnerable to an integer overflow when processing a crafted PostScript file using the ps2pdf command (CVE-2015-3228).

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.014

Percentile

86.5%