CVE-2008-6679

EUVD-2008-6641
Buffer overflow in the BaseFont writer module in Ghostscript 8.62, and possibly other versions, allows remote attackers to cause a denial of service (ps2pdf crash) and possibly execute arbitrary code via a crafted Postscript file.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:N/I:N/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 90%
Affected Products (NVD)
VendorProductVersion
ghostscriptghostscript
8.62
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
ghostscript
bookworm
10.0.0~dfsg-11+deb12u4
fixed
bookworm (security)
10.0.0~dfsg-11+deb12u5
fixed
bullseye
9.53.3~dfsg-7+deb11u7
fixed
bullseye (security)
9.53.3~dfsg-7+deb11u8
fixed
sid
10.04.0~dfsg-1
fixed
trixie
10.04.0~dfsg-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
ghostscript
dapper
dne
gutsy
ignored
hardy
Fixed 8.61.dfsg.1-1ubuntu3.2
released
intrepid
Fixed 8.63.dfsg.1-0ubuntu6.4
released
jaunty
not-affected
karmic
not-affected
gs-afpl
dapper
ignored
gutsy
dne
hardy
dne
intrepid
dne
jaunty
dne
karmic
dne
gs-esp
dapper
Fixed 8.15.2.dfsg.0ubuntu1-0ubuntu1.2
released
gutsy
dne
hardy
dne
intrepid
dne
jaunty
dne
karmic
dne
gs-gpl
dapper
Fixed 8.15-4ubuntu3.3
released
gutsy
dne
hardy
dne
intrepid
dne
jaunty
dne
karmic
dne
References