Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Ubuntu 13.04: USN-1911-2 Critical Ghostscript Crash Overview

Ubuntu Large Esm H500
Ghostscript could be made to crash if it opened a specially crafted file.

=========================================================================Ubuntu Security Notice USN-1911-2
July 31, 2013

ghostscript vulnerability
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 13.04

Summary:

Ghostscript could be made to crash if it opened a specially crafted file.

Software Description:
- ghostscript: PostScript and PDF interpreter

Details:

USN-1911-1 fixed vulnerabilities in Little CMS. This update provides the
corresponding updates for Ghostscript.

Original advisory details:

 It was discovered that Little CMS did not properly verify certain memory
 allocations. If a user or automated system using Little CMS were tricked
 into opening a specially crafted file, an attacker could cause Little CMS
 to crash.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 13.04:
  libgs9                          9.07~dfsg2-0ubuntu3.1

In general, a standard system update will make all the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-1911-2
  https://ubuntu.com/security/notices/USN-1911-1
  CVE-2013-4160

Package Information:
  https://launchpad.net/ubuntu/+source/ghostscript/9.07~dfsg2-0ubuntu3.1




Ubuntu 13.04: USN-1911-2 Critical Ghostscript Crash Overview

ubuntu
Calendar Grey July 31, 2013
Dist Ubuntu Esm H88
Critical Ghostscript flaw in Ubuntu 13.04 might cause system instability when processing maliciously designed documents. Immediate update is advised.
Ghostscript could be made to crash if it opened a specially crafted file.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 13.04: libgs9 9.07~dfsg2-0ubuntu3.1 In general, a standard system update will make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-1911-2

https://ubuntu.com/security/notices/USN-1911-1

CVE-2013-4160

Severity
critical
Lowest
Low
Medium
High
Critical

=========================================================================Ubuntu Security Notice USN-1911-2

Package Information

https://launchpad.net/ubuntu/+source/ghostscript/9.07~dfsg2-0ubuntu3.1

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here