FlawAtlas
Search the atlas
SUSE-SU-2017:1322-1 Not scored

Security update for ghostscript-library

This update for ghostscript fixes the following security vulnerability: CVE-2017-8291: A remote command execution and a -dSAFER bypass via a crafted .eps document were exploited in the wild. (bsc#1036453) This update is a reissue including the SUSE Linux Enterprise 11 SP3 product.

Exploit probability Not scored
Published May 17, 2017
Required by Not available
Last source change May 2, 2025

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Point of Sale 11 SP3 ghostscript-library
SUSE:Linux Enterprise Server 11 SP3-LTSS ghostscript-library
SUSE:Linux Enterprise Server 11 SP3-TERADATA ghostscript-library
SUSE:Linux Enterprise Server 11 SP4 ghostscript-library
SUSE:Linux Enterprise Server for SAP Applications 11 SP4 ghostscript-library
SUSE:Linux Enterprise Software Development Kit 11 SP4 ghostscript-library
SUSE:OpenStack Cloud 5 ghostscript-library

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2017:1322-1

This update for ghostscript fixes the following security vulnerability: CVE-2017-8291: A remote command execution and a -dSAFER bypass via a crafted .eps document were exploited in the wild. (bsc#1036453) This update is a reissue including the SUSE Linux Enterprise 11 SP3 product.

View original source

05 / REFERENCES

Further evidence