Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:12398
HistoryJan 15, 2019 - 9:16 a.m.

Remote Code Execution (RCE)

2019-01-1509:16:42
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.49 Medium

EPSS

Percentile

97.5%

ghostscript is vulnerable to remote code execution. It was found that ghostscript did not properly validate the parameters passed to the .rsdparams and .eqproc functions. During its execution, a specially crafted PostScript document could execute code in the context of the ghostscript process, bypassing the -dSAFER protection.