CVE-2009-0196

Heap-based buffer overflow in the big2_decode_symbol_dict function (jbig2_symbol_dict.c) in the JBIG2 decoding library (jbig2dec) in Ghostscript 8.64, and probably earlier versions, allows remote attackers to execute arbitrary code via a PDF file with a JBIG2 symbol dictionary segment with a large run length value.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
flexeraCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 93%
VendorProductVersion
ghostscriptghostscript
𝑥
≤ 8.64
ghostscriptghostscript
5.50
ghostscriptghostscript
7.07
ghostscriptghostscript
8.0.1
ghostscriptghostscript
8.15
ghostscriptghostscript
8.15.2
ghostscriptghostscript
8.54
ghostscriptghostscript
8.56
ghostscriptghostscript
8.57
ghostscriptghostscript
8.60
ghostscriptghostscript
8.61
ghostscriptghostscript
8.62
ghostscriptghostscript
8.63
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
ghostscript
bullseye
9.53.3~dfsg-7+deb11u7
fixed
bullseye (security)
9.53.3~dfsg-7+deb11u8
fixed
bookworm
10.0.0~dfsg-11+deb12u4
fixed
bookworm (security)
10.0.0~dfsg-11+deb12u5
fixed
sid
10.04.0~dfsg-1
fixed
trixie
10.04.0~dfsg-1
fixed
jbig2dec
bullseye
0.19-2
fixed
bookworm
0.19-3
fixed
sid
0.20-1
fixed
trixie
0.20-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
ghostscript
karmic
Fixed 8.64.dfsg.1-0ubuntu8
released
jaunty
Fixed 8.64.dfsg.1-0ubuntu8
released
intrepid
Fixed 8.63.dfsg.1-0ubuntu6.4
released
hardy
Fixed 8.61.dfsg.1-1ubuntu3.2
released
gutsy
ignored
dapper
dne
gs-afpl
karmic
dne
jaunty
dne
intrepid
dne
hardy
dne
gutsy
dne
dapper
ignored
gs-esp
karmic
dne
jaunty
dne
intrepid
dne
hardy
dne
gutsy
dne
dapper
Fixed 8.15.2.dfsg.0ubuntu1-0ubuntu1.2
released
gs-gpl
karmic
dne
jaunty
dne
intrepid
dne
hardy
dne
gutsy
dne
dapper
Fixed 8.15-4ubuntu3.3
released
References