VulnerabilityModified
CVE-2019-6116
In Artifex Ghostscript through 9.26, ephemeral or transient procedures can allow access to system operators, leading to remote code execution.
HIGH 7.8EPSS 41.6%
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 41.6%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
In Artifex Ghostscript through 9.26, ephemeral or transient procedures can allow access to system operators, leading to remote code execution.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- EPSS
- 41.59% probability · 99th percentile
- CISA KEV
- Not listed
- Affected
- artifex/ghostscript · fedoraproject/fedora · canonical/ubuntu linux · debian/debian linux · opensuse/leap · redhat/enterprise linux desktop · redhat/enterprise linux server · redhat/enterprise linux server aus · redhat/enterprise linux server eus · redhat/enterprise linux server tus · redhat/enterprise linux workstation
- Source
- cve@mitre.org
References
- http://lists.opensuse.org/opensuse-security-announce/2019-01/msg00047.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2019-01/msg00048.htmlMailing List, Third Party Advisory
- http://packetstormsecurity.com/files/151307/Ghostscript-Pseudo-Operator-Remote-Code-Execution.htmlThird Party Advisory, VDB Entry
- http://packetstormsecurity.com/files/152367/Slackware-Security-Advisory-ghostscript-Updates.htmlThird Party Advisory, VDB Entry
- http://www.openwall.com/lists/oss-security/2019/01/23/5Exploit, Mailing List, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2019/03/21/1Mailing List, Patch, Third Party Advisory
- http://www.securityfocus.com/bid/106700Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHBA-2019:0327Third Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0229Third Party Advisory
- https://bugs.chromium.org/p/project-zero/issues/detail?id=1729Exploit, Issue Tracking, Patch, Third Party Advisory
- https://bugs.ghostscript.com/show_bug.cgi?id=700317Exploit, Issue Tracking, Patch, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2019/02/msg00016.htmlMailing List, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6AATIHU32MYKUOXQDJQU4X4DDVL7NAY3/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/7N6T5L3SSJX2AVUPHP7GCPATFWUPKZT2/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MWVAVCDXBLPLJMVGNSKGGDTBEOHCJBKK/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/XVWXVKG72IGEJYHLWE6H3CGALHGFSGGY/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZP34D27RKYV2POJ3NJLSVCHUA5V5C45A/
- https://seclists.org/bugtraq/2019/Apr/4Mailing List, Third Party Advisory
- https://security.gentoo.org/glsa/202004-03Third Party Advisory
- https://usn.ubuntu.com/3866-1/Third Party Advisory
- https://www.debian.org/security/2019/dsa-4372Third Party Advisory
- https://www.exploit-db.com/exploits/46242/Exploit, Third Party Advisory, VDB Entry
- http://lists.opensuse.org/opensuse-security-announce/2019-01/msg00047.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2019-01/msg00048.htmlMailing List, Third Party Advisory
- http://packetstormsecurity.com/files/151307/Ghostscript-Pseudo-Operator-Remote-Code-Execution.htmlThird Party Advisory, VDB Entry
- http://packetstormsecurity.com/files/152367/Slackware-Security-Advisory-ghostscript-Updates.htmlThird Party Advisory, VDB Entry
- http://www.openwall.com/lists/oss-security/2019/01/23/5Exploit, Mailing List, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2019/03/21/1Mailing List, Patch, Third Party Advisory
- http://www.securityfocus.com/bid/106700Third Party Advisory, VDB Entry
- https://access.redhat.com/errata/RHBA-2019:0327Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.