Oval Definition:oval:com.ubuntu.disco:def:2019148690000000
Revision Date:2019-11-15Version:1
Title:CVE-2019-14869 on Ubuntu 19.04 (disco) - high.
Description:A flaw was found in all versions of ghostscript 9.x before 9.50, where the `.charkeys` procedure, where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges within the Ghostscript and access files outside of restricted areas or execute commands.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2019-14869
Platform(s):Ubuntu 19.04
Product(s):
Definition Synopsis
  • Ubuntu 19.04 (disco) is installed.
  • AND ghostscript package in disco was vulnerable but has been fixed (note: '9.26~dfsg+0-0ubuntu7.4').
  • BACK