Search CVE reports


Toggle filters

201 – 210 of 255 results


CVE-2017-6196

Medium priority
Not affected

Multiple use-after-free vulnerabilities in the gx_image_enum_begin function in base/gxipixel.c in Ghostscript before ecceafe3abba2714ef9b432035fe0739d9b1a283 allow remote attackers to cause a denial of service (application crash)...

1 affected package

ghostscript

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript
Show less packages

CVE-2016-8881

Medium priority
Not affected

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4517. Reason: This candidate is a duplicate of CVE-2011-4517. Notes: All CVE users should reference CVE-2011-4517 instead of this candidate. All references...

3 affected packages

ghostscript, jasper, netpbm-free

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript
jasper
netpbm-free
Show less packages

CVE-2016-8880

Medium priority
Ignored

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-4516. Reason: This candidate is a duplicate of CVE-2011-4516. Notes: All CVE users should reference CVE-2011-4516 instead of this candidate. All references...

3 affected packages

ghostscript, jasper, netpbm-free

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript
jasper
netpbm-free
Show less packages

CVE-2016-9117

Low priority
Vulnerable

NULL Pointer Access in function imagetopnm of convert.c(jp2):1289 in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k file.

3 affected packages

ghostscript, openjpeg2, openjpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript Not affected Not affected Not affected Not affected
openjpeg2 Not affected Not affected Not affected Not affected
openjpeg Not in release Not in release Not in release Not in release
Show less packages

CVE-2016-9116

Low priority
Vulnerable

NULL Pointer Access in function imagetopnm of convert.c:2226(jp2) in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k file.

3 affected packages

ghostscript, openjpeg2, openjpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript Not affected Not affected Not affected Not affected
openjpeg2 Not affected Not affected Not affected Not affected
openjpeg Not in release Not in release Not in release Not in release
Show less packages

CVE-2016-9115

Low priority
Vulnerable

Heap Buffer Over-read in function imagetotga of convert.c(jp2):942 in OpenJPEG 2.1.2. Impact is Denial of Service. Someone must open a crafted j2k file.

3 affected packages

ghostscript, openjpeg2, openjpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript Not affected Not affected Not affected Not affected
openjpeg2 Not affected Not affected Not affected Not affected
openjpeg Not in release Not in release Not in release Not in release
Show less packages

CVE-2016-9114

Low priority
Vulnerable

There is a NULL Pointer Access in function imagetopnm of convert.c:1943(jp2) of OpenJPEG 2.1.2. image->comps[compno].data is not assigned a value after initialization(NULL). Impact is Denial of Service.

3 affected packages

openjpeg2, ghostscript, openjpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjpeg2 Not affected Not affected Not affected Not affected
ghostscript Not affected Not affected Not affected Not affected
openjpeg Not in release Not in release Not in release Not in release
Show less packages

CVE-2016-9113

Low priority
Vulnerable

There is a NULL pointer dereference in function imagetobmp of convertbmp.c:980 of OpenJPEG 2.1.2. image->comps[0].data is not assigned a value after initialization(NULL). Impact is Denial of Service.

3 affected packages

openjpeg2, ghostscript, openjpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
openjpeg2 Not affected Not affected Not affected Not affected
ghostscript Not affected Not affected Not affected Not affected
openjpeg Not in release Not in release Not in release Not in release
Show less packages

CVE-2016-8602

Medium priority
Fixed

The .sethalftone5 function in psi/zht2.c in Ghostscript before 9.21 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Postscript document that calls...

1 affected package

ghostscript

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript
Show less packages

CVE-2016-7979

Medium priority
Fixed

Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently execute arbitrary code by leveraging type confusion in .initialize_dsc_parser.

1 affected package

ghostscript

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ghostscript
Show less packages