Security restrictions bypass in Ghostscript - CVE-2018-19409
Published: November 21, 2018 / Updated: November 22, 2018
Vulnerability details
The vulnerability allows a local attacker to bypass security restrictions on the target system.
The vulnerability exists due to improper checks of the LockSafetyParams device parameter if another device is used as the top device. A local attacker can make a .setdevice call and bypass security restrictions If another device, such as the pdf14 compositor, is the top device on the system.
Affected software
Debian Linux
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for Power
Opensuse
Fedora
ghostscript (Alpine package)
ghostscript
EMC Cloud Tiering Appliance
How to mitigate CVE-2018-19409
ghostscript (Alpine package) - update to 9.26-r0
ghostscript - addressed in versions 9.26-1.fc28, 9.26-1.fc29
EMC Cloud Tiering Appliance - update to 12.1.0.65
External References
Related Security Bulletins
- Debian update for ghostscript
- OpenSUSE Linux update for ghostscript
- OpenSUSE Linux update for ghostscript
- Red Hat update for ghostscript
- Multiple vulnerabilities in Artifex Ghostscript
- Security restrictions bypass in ghostscript (Alpine package)
- Multiple vulnerabilities in Dell EMC Cloud Tiering Appliance Family
- Fedora 29 update for ghostscript
- Fedora 28 update for ghostscript