An issue was discovered in Artifex Ghostscript before 9.25. Incorrect "restoration of privilege" checking when running out of stack during exception handling could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instruction. This is due to an incomplete fix for CVE-2018-16509.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2018-09-10T16:00:00

Updated: 2018-12-18T10:57:01

Reserved: 2018-09-10T00:00:00


Link: CVE-2018-16802

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2018-09-10T16:29:00.950

Modified: 2023-11-07T02:53:56.210


Link: CVE-2018-16802

JSON object: View

cve-icon Redhat Information

No data.