The set_text_distance function in devices/vector/gdevpdts.c in the pdfwrite component in Artifex Ghostscript up to and including 9.22 does not prevent overflows in text-positioning calculation, which allows remote malicious users to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PDF document.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
artifex ghostscript |
||
canonical ubuntu linux 16.04 |
||
canonical ubuntu linux 14.04 |
||
canonical ubuntu linux 17.10 |
||
canonical ubuntu linux 18.04 |
||
debian debian linux 7.0 |
||
redhat enterprise linux desktop 7.0 |
||
redhat enterprise linux workstation 7.0 |
||
redhat enterprise linux server 7.0 |
||
redhat enterprise linux server eus 7.5 |
||
redhat enterprise linux server eus 7.7 |
||
redhat enterprise linux server aus 7.7 |
||
redhat enterprise linux server tus 7.7 |