Loading HuntDB...

Artifex Ghostscript Type Confusion Vulnerability

Added May 24, 2022 Due June 14, 2022 CVE-2017-8291
Overdue Artifex / Ghostscript CWE-704

Description

Artifex Ghostscript allows -dSAFER bypass and remote command execution via .rsdparams type confusion with a "/OutputFile.

Required Action

Apply updates per vendor instructions.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
8 months ago