[ubuntu/trusty-security] ghostscript 9.10~dfsg-0ubuntu10.12 (Accepted)

Leonidas S. Barbosa leo.barbosa at canonical.com
Mon Apr 30 17:23:13 UTC 2018


ghostscript (9.10~dfsg-0ubuntu10.12) trusty-security; urgency=medium

  * SECURITY UPDATE: Heap-based buffer overflow and application crash
    - debian/patches/CVE-2016-10317.patch: check max_height bounds in
      base/gxht_thresh.c, base/gxipixel.c.
    - CVE-2016-10317
  * SECURITY UPDATE: Denial of service
    - debian/patches/CVE-2018-10194.patch: avoid infinite number
      in devices/vector/gdevpdts.c.
    - CVE-2018-10194

Date: 2018-04-23 19:13:12.345939+00:00
Changed-By: leo.barbosa at canonical.com (Leonidas S. Barbosa)
https://launchpad.net/ubuntu/+source/ghostscript/9.10~dfsg-0ubuntu10.12
-------------- next part --------------
Sorry, changesfile not available.


More information about the Trusty-changes mailing list