Lucene search

K
redosRedosROS-20240405-09
HistoryApr 05, 2024 - 12:00 a.m.

ROS-20240405-09

2024-04-0500:00:00
redos.red-soft.ru
14
ghostscript
vulnerability
gdev_prn_open_printer_seekable
denial of service
memory usage
unix

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.5

Confidence

High

EPSS

0.001

Percentile

38.8%

A vulnerability in the gdev_prn_open_printer_seekable() function of the gdev_prn_open_printer_seekable() interpreter of the Ghostscript suite of software for
Ghostscript document processing, conversion and generation software set interpreter is related to memory usage after its
release. Exploitation of the vulnerability could allow an attacker acting remotely to cause a denial of
denial of service

OSVersionArchitecturePackageVersionFilename
redos7.3x86_64ghostscript< 9.52-7UNKNOWN

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.5

Confidence

High

EPSS

0.001

Percentile

38.8%