Sign in
CVE-2009-4897
CVE-2009-4897
Description
Buffer overflow in gs/psi/iscan.c in Ghostscript 8.64 and earlier allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted PDF document containing a long name.
Impact
CVSS v2 : 9.3 HIGH
Type
CWE-119
Attack Vector
CVSSv2 Vector : AV:N/AC:M/Au:N/C:C/I:C/A:C
Quick links
CVE
,
NVD
,
CERT
,
Metasploit
,
Exploit-db
,
Fulldisc
,
Bugtraq
,
Microsoft
,
Red Hat
,
Debian
, GitHub
code
/
issues
,
Google
References
http://bugs.ghostscript.com/show_bug.cgi?id=690523
http://secunia.com/advisories/40580
http://security.gentoo.org/glsa/glsa-201412-17.xml
http://www.mandriva.com/security/advisories?name=MDVSA-2010:134
http://www.mandriva.com/security/advisories?name=MDVSA-2010:135
http://www.osvdb.org/66277
http://www.securityfocus.com/bid/41593
http://www.ubuntu.com/usn/USN-961-1
https://bugzilla.redhat.com/show_bug.cgi?id=613792
https://exchange.xforce.ibmcloud.com/vulnerabilities/60380
FAQ
Terms of service
Privacy policy