605
VMScore

CVE-2018-16543

Published: 05/09/2018 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

In Artifex Ghostscript prior to 9.24, gssetresolution and gsgetresolution allow malicious users to have an unspecified impact.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

artifex ghostscript

canonical ubuntu linux 16.04

canonical ubuntu linux 14.04

canonical ubuntu linux 18.04

debian debian linux 8.0

debian debian linux 9.0

Vendor Advisories

Several security issues were fixed in Ghostscript ...
Debian Bug report logs - #908304 ghostscript: CVE-2018-16510 Package: src:ghostscript; Maintainer for src:ghostscript is Debian Printing Team <debian-printing@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 8 Sep 2018 08:57:09 UTC Severity: grave Tags: patch, security, upstream F ...
Debian Bug report logs - #908305 ghostscript: CVE-2018-16585 Package: src:ghostscript; Maintainer for src:ghostscript is Debian Printing Team <debian-printing@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 8 Sep 2018 09:06:02 UTC Severity: grave Tags: patch, security, upstream F ...
Debian Bug report logs - #908303 ghostscript: CVE-2018-16543 Package: src:ghostscript; Maintainer for src:ghostscript is Debian Printing Team <debian-printing@listsdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 8 Sep 2018 08:57:05 UTC Severity: grave Tags: patch, security, upstream F ...
It was discovered that the ghostscript gssetresolution and gsgetresolution procedures were available, although they have dangerous side effects An attacker could possibly exploit this to bypass the -dSAFER protection and crash ghostscript or, possibly, execute arbitrary code in the ghostscript context via a specially crafted PostScript document ...