gpp_maybe Security update for ghostscript
SUSE-SLE-SERVER-12-SP1-2017-659


This update for ghostscript fixes the following security vulnerabilities: CVE-2017-8291: A remote command execution and a -dSAFER bypass via a crafted .eps document were exploited in the wild. (bsc#1036453) CVE-2016-9601: An integer overflow in the bundled jbig2dec library could have been misused to cause a Denial-of-Service. (bsc#1018128) CVE-2016-10220: A NULL pointer dereference in the PDF Transparency module allowed remote attackers to cause a Denial-of-Service. (bsc#1032120) CVE-2017-5951: A NULL pointer dereference allowed remote attackers to cause a denial of service via a crafted PostScript document. (bsc#1032114) CVE-2017-7207: A NULL pointer dereference allowed remote attackers to cause a denial of service via a crafted PostScript document. (bsc#1030263)


cloud_download Downloads

SUSE Linux Enterprise Server 12.1 ppc64le
  • Packages
    ghostscript
    The Ghostscript interpreter for PostScript and PDF
    9.15-20.1 lock rpm lock src
    ghostscript-x11
    X11 library for Ghostscript
    9.15-20.1 lock rpm
SUSE Linux Enterprise Server 12.1 s390x
  • Packages
    ghostscript
    The Ghostscript interpreter for PostScript and PDF
    9.15-20.1 lock rpm lock src
    ghostscript-x11
    X11 library for Ghostscript
    9.15-20.1 lock rpm
SUSE Linux Enterprise Server for SAP Applications 12.1 x86_64
  • Packages
    ghostscript
    The Ghostscript interpreter for PostScript and PDF
    9.15-20.1 lock rpm lock src
    ghostscript-x11
    X11 library for Ghostscript
    9.15-20.1 lock rpm