Lucene search

K
osvGoogleOSV:CVE-2019-14817
HistorySep 03, 2019 - 4:15 p.m.

CVE-2019-14817

2019-09-0316:15:11
Google
osv.dev
4

7.1 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

59.5%

A flaw was found in, ghostscript versions prior to 9.50, in the .pdfexectoken and other procedures where it did not properly secure its privileged calls, enabling scripts to bypass -dSAFER restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or execute arbitrary commands.

References