FlawAtlas
Search the atlas
SUSE-SU-2021:3044-1 Not scored

Security update for ghostscript

This update for ghostscript fixes the following issues: Security issue fixed: - CVE-2021-3781: Fixed a trivial -dSAFER bypass command injection (bsc#1190381) Also a hardening fix was added: - Link as position independent executable (bsc#1184123)

Exploit probability Not scored
Published September 15, 2021
Required by Not available
Last source change May 2, 2025

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Module for Desktop Applications 15 SP3 libspectre
SUSE:Enterprise Storage 6 ghostscript
SUSE:Enterprise Storage 6 libspectre
SUSE:Linux Enterprise High Performance Computing 15 SP1-ESPOS ghostscript
SUSE:Linux Enterprise High Performance Computing 15 SP1-ESPOS libspectre
SUSE:Linux Enterprise High Performance Computing 15 SP1-LTSS ghostscript
SUSE:Linux Enterprise High Performance Computing 15 SP1-LTSS libspectre
SUSE:Linux Enterprise High Performance Computing 15-ESPOS ghostscript
SUSE:Linux Enterprise High Performance Computing 15-ESPOS libspectre
SUSE:Linux Enterprise High Performance Computing 15-LTSS ghostscript
SUSE:Linux Enterprise High Performance Computing 15-LTSS libspectre
SUSE:Linux Enterprise Module for Basesystem 15 SP2 ghostscript
SUSE:Linux Enterprise Module for Basesystem 15 SP3 ghostscript
SUSE:Linux Enterprise Module for Desktop Applications 15 SP2 libspectre
SUSE:Linux Enterprise Server 15 SP1-BCL ghostscript
SUSE:Linux Enterprise Server 15 SP1-BCL libspectre
SUSE:Linux Enterprise Server 15 SP1-LTSS ghostscript
SUSE:Linux Enterprise Server 15 SP1-LTSS libspectre
SUSE:Linux Enterprise Server 15-LTSS ghostscript
SUSE:Linux Enterprise Server 15-LTSS libspectre
SUSE:Linux Enterprise Server for SAP Applications 15 ghostscript
SUSE:Linux Enterprise Server for SAP Applications 15 libspectre
SUSE:Linux Enterprise Server for SAP Applications 15 SP1 ghostscript
SUSE:Linux Enterprise Server for SAP Applications 15 SP1 libspectre
SUSE:Manager Proxy 4.0 ghostscript
SUSE:Manager Proxy 4.0 libspectre
SUSE:Manager Retail Branch Server 4.0 ghostscript
SUSE:Manager Retail Branch Server 4.0 libspectre
SUSE:Manager Server 4.0 ghostscript
SUSE:Manager Server 4.0 libspectre

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2021:3044-1

This update for ghostscript fixes the following issues: Security issue fixed: - CVE-2021-3781: Fixed a trivial -dSAFER bypass command injection (bsc#1190381) Also a hardening fix was added: - Link as position independent executable (bsc#1184123)

View original source

05 / REFERENCES

Further evidence