Ghostscript GhostXPS CVE-2017-9726 Denial of Service Vulnerability

Ghostscript GhostXPS is prone to a denial-of-service vulnerability.

An attacker can exploit this issue to cause denial-of-service condition.

Artifex Ghostscript GhostXPS 9.22 is vulnerable; other versions may also be affected.


Bugtraq ID: 99992
Class: Boundary Condition Error
CVE: CVE-2017-9726

Remote: Yes
Local: No
Published: Jul 26 2017 12:00AM
Updated: Oct 04 2017 04:01PM
Credit: The vendor reported this issue.
Vulnerable: Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
Artifex Ghostscript GhostXPS 9.22

Not Vulnerable:


The researcher has created a proof-of-concept to demonstrate the issue. Please see the references for more information.

Related Posts