Oval Definition:oval:org.mitre.oval:def:22722
Revision Date:2014-05-26Version:20
Title:ELSA-2009:0345: ghostscript security update (Moderate)
Description:icc.c in the International Color Consortium (ICC) Format library (aka icclib), as used in Ghostscript 8.64 and earlier and Argyll Color Management System (CMS) 1.0.3 and earlier, allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code by using a device file for processing a crafted image file associated with large integer values for certain sizes, related to an ICC profile in a (1) PostScript or (2) PDF file with embedded images.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2009-0583
CVE-2009-0584
ELSA-2009:0345-01
Platform(s):Oracle Linux 5
Product(s):ghostscript
Definition Synopsis
  • Oracle Linux 5.x
  • AND rpm test
  • ghostscript-gtk is earlier than 0:8.15.2-9.4.el5_3.4
  • OR ghostscript is earlier than 0:8.15.2-9.4.el5_3.4
  • OR ghostscript-devel is earlier than 0:8.15.2-9.4.el5_3.4
  • BACK