Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Gentoo Linux Security Advisory GLSA 200903-37
https://security.gentoo.org/
Severity: Normal
Title: Ghostscript: User-assisted execution of arbitrary code
Date: March 23, 2009
Bugs: #261087
ID: 200903-37
Synopsis
=======
Multiple integer overflows in the Ghostscript ICC library might allow
for user-assisted execution of arbitrary code.
Background
=========
Ghostscript is an interpreter for the PostScript language and the
Portable Document Format (PDF).
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 app-text/ghostscript-gpl < 8.64-r2 >= 8.64-r2
2 app-text/ghostscript-gnu < 8.62.0 >= 8.62.0
3 app-text/ghostscript-esp <= 8.15.4-r1 Vulnerable!
-------------------------------------------------------------------
NOTE: Certain packages are still vulnerable. Users should migrate
to another package if one is available or wait for the
existing packages to be marked stable by their
architecture maintainers.
-------------------------------------------------------------------
3 affected packages on all of their supported architectures.
-------------------------------------------------------------------
==========
Jan Lie...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.