Related Vulnerabilities: CVE-2019-14869  

A way to escape the -dSAFER sandbox has been found in ghostscript before 9.50. The issue was still present in 9.50 but is mitigated by the recent -dSAFER rework.

Severity High

Remote No

Type Sandbox escape

Description

A way to escape the -dSAFER sandbox has been found in ghostscript before 9.50. The issue was still present in 9.50 but is mitigated by the recent -dSAFER rework.

AVG-1069 ghostscript 9.27-2 9.50-1 High Fixed

https://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=485904772c5f
https://bugs.ghostscript.com/show_bug.cgi?id=701841