In Artifex Ghostscript 9.23 before 2018-08-24, a type confusion using the .shfill operator could be used by attackers able to supply crafted PostScript files to crash the interpreter or potentially execute code.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-08-27T17:00:00
Updated: 2024-08-05T10:10:05.371Z
Reserved: 2018-08-27T00:00:00
Link: CVE-2018-15909
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-08-27T17:29:00.437
Modified: 2024-11-21T03:51:41.910
Link: CVE-2018-15909
Redhat