Lucene search

K
redhatcveRedhat.comRH:CVE-2018-15908
HistoryJan 13, 2022 - 6:39 a.m.

CVE-2018-15908

2022-01-1306:39:54
redhat.com
access.redhat.com
22

0.003 Low

EPSS

Percentile

69.2%

It was discovered that the ghostscript .tempfile function did not properly handle file permissions. An attacker could possibly exploit this to exploit this to bypass the -dSAFER protection and delete files or disclose their content via a specially crafted PostScript document.

Mitigation

Please see <https://bugzilla.redhat.com/show_bug.cgi?id=1619748#c3&gt;