Hi Didier,

GNU Ghostscript is vulnerable to CVE-2010-1628.

http://bugs.debian.org/584516
https://bugs.launchpad.net/ubuntu/+source/ghostscript/+bug/546009
http://bugs.ghostscript.com/show_bug.cgi?id=691295
https://bugzilla.redhat.com/show_bug.cgi?id=592492

The attached patch (backported to Ghostscript 8.71 from upstream SVN by Redhat) should fix it.


Thanks

Markus Steinborn
GNU gv maintainer

Reply via email to