4.3
CVSSv2

CVE-2018-19478

Published: 02/01/2019 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

In Artifex Ghostscript prior to 9.26, a carefully crafted PDF file can trigger an extremely long running computation when parsing the file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

artifex ghostscript

debian debian linux 8.0

Vendor Advisories

Several vulnerabilities were discovered in Ghostscript, the GPL PostScript/PDF interpreter, which may result in denial of service or the execution of arbitrary code if a malformed Postscript file is processed (despite the -dSAFER sandbox being enabled) This update rebases ghostscript for stretch to the upstream version 926 which includes addition ...
In Artifex Ghostscript before 926, a carefully crafted PDF file can trigger an extremely long running computation when parsing the file ...