CVE-2020-16292
CVE-2020-16292
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 2.0%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Lifecycle
13 Aug 2020Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A buffer overflow vulnerability in mj_raster_cmd() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://bugs.ghostscript.com/show_bug.cgi?id=701793https://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=863ada11f9a942a622a581312e2be022d9e2a6f7https://lists.debian.org/debian-lts-announce/2020/08/msg00032.htmlhttps://security.gentoo.org/glsa/202008-20https://usn.ubuntu.com/4469-1/https://www.debian.org/security/2020/dsa-4748