In Artifex Ghostscript 9.23 before 2018-08-24, attackers able to supply crafted PostScript could use uninitialized memory access in the aesdecode operator to crash the interpreter or potentially execute code.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2018-08-28T04:00:00
Updated: 2024-08-05T10:10:04.990Z
Reserved: 2018-08-27T00:00:00
Link: CVE-2018-15911
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-08-28T04:29:00.217
Modified: 2023-11-07T02:53:25.720
Link: CVE-2018-15911
Redhat