Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21411
HistorySep 03, 2019 - 12:20 a.m.

Safer Restriction Bypass

2019-09-0300:20:36
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.002 Low

EPSS

Percentile

54.3%

Ghostscript is vulnerable to safer restriction bypass. The attack is possible due to a flaw of exposing .forceput through .pdf_hook_DSC_Creator when hooking errors, allowing an attacker to bypass the -dSAFER restrictions by sending a malicious PostScript file.

References