CVE-2015-3228

EPSS 0.97%

ghostscript - security update

發布日:2015/8/11修改日:2026/4/28

描述

Integer overflow in the gs_heap_alloc_bytes function in base/gsmalloc.c in Ghostscript 9.15 and earlier allows remote attackers to cause a denial of service (crash) via a crafted Postscript (ps) file, as demonstrated by using the ps2pdf command, which triggers an out-of-bounds read or write.

受影響套件(3)

參考連結(1)