Ghostscript 8.64, 8.70, and possibly other versions allows context-dependent malicious users to execute arbitrary code via a PostScript file containing unlimited recursive procedure invocations, which trigger memory corruption in the stack of the interpreter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
artifex gpl ghostscript 8.64 |
||
artifex gpl ghostscript 8.70 |