AVG-256

Package ghostscript
Status Fixed
Severity High
Type arbitrary command execution
Affected 9.21-1
Fixed 9.21-2
Current 9.22-7 [extra]
Ticket None
Created Thu Apr 27 16:15:39 2017
Issue Severity Remote Type Description
CVE-2017-8291 High Yes Arbitrary command execution
It was found that ghostscript did not properly validate the parameters passed to the .rsdparams and .eqproc functions. During its execution, a specially...
Date Advisory Package Description
07 May 2017 ASA-201705-3 ghostscript arbitrary command execution
References
https://bugs.ghostscript.com/show_bug.cgi?id=697808