ELSA-2018-3834

ELSA-2018-3834 - ghostscript security and bug fix update

Type:SECURITY
Impact:IMPORTANT
Release Date:2018-12-18

Description


[9.07-31.el7_6.6]
- Resolves: #1657822 - ghostscript: Regression: Warning: Dropping incorrect
smooth shading object (Error: /rangecheck in --run--)

[9.07-31.el7_6.5]
- Resolves: #1654621 - CVE-2018-16541 ghostscript: incorrect free logic in
pagedevice replacement (699664)
- Resolves: #1650210 - CVE-2018-17183 ghostscript: User-writable error
exception table
- Resolves: #1645516 - CVE-2018-18073 ghostscript: saved execution stacks
can leak operator arrays
- Resolves: #1648891 - CVE-2018-17961 ghostscript: saved execution stacks
can leak operator arrays (incomplete fix for CVE-2018-17183)
- Resolves: #1643115 - CVE-2018-18284 ghostscript: 1Policy operator
allows a sandbox protection bypass
- Resolves: #1655937 - CVE-2018-19134 ghostscript: Type confusion in
setpattern (700141)

[9.07-31.el7_6.4]
- Resolves: #1651149 - CVE-2018-15911 ghostscript: uninitialized memory
access in the aesdecode operator (699665)
- Resolves: #1650060 - CVE-2018-16802 ghostscript: Incorrect 'restoration of
privilege' checking when running out of stack during exception handling
- Resolves: #1652935 - CVE-2018-19409 ghostscript: Improperly implemented
security check in zsetdevice function in psi/zdevice.c


Related CVEs


CVE-2018-15911
CVE-2018-18073
CVE-2018-18284
CVE-2018-17183
CVE-2018-16541
CVE-2018-16802
CVE-2018-19134
CVE-2018-19409
CVE-2018-17961

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (aarch64) ghostscript-9.07-31.el7_6.6.src.rpmd3f0785286c5421f244df9e5c0e8d61deea7c4ae7a3bcd50421bce70a5e41928ELSA-2024-4549ol7_aarch64_latest
ghostscript-9.07-31.el7_6.6.src.rpmd3f0785286c5421f244df9e5c0e8d61deea7c4ae7a3bcd50421bce70a5e41928ELSA-2024-4549ol7_aarch64_optional_latest
ghostscript-9.07-31.el7_6.6.aarch64.rpmf3f046a287371c339014bb11d1dd9d69a7b4bc998a557efe4aa02b7bfaeee5e8ELSA-2024-4549ol7_aarch64_latest
ghostscript-cups-9.07-31.el7_6.6.aarch64.rpm088aa48f0079b87166afa4e1681c06bbdd9e57c795c6057bbead31b5dfaecc84ELSA-2024-4549ol7_aarch64_latest
ghostscript-devel-9.07-31.el7_6.6.aarch64.rpm81632268de44bbfd1e0bff7b097aaf447322691419b0961c65c744fc414f6bb8ELSA-2019-1017ol7_aarch64_optional_latest
ghostscript-doc-9.07-31.el7_6.6.noarch.rpm23f5d2a3d37cc7dcbc1857200dfee1047479841604d35f88ceb645419c8d02adELSA-2024-4549ol7_aarch64_optional_latest
ghostscript-gtk-9.07-31.el7_6.6.aarch64.rpmff9cb92f4a2de1d75fa5b30154d2234fe3f3840f9a1e2fe5b53708cfe796df47ELSA-2024-4549ol7_aarch64_optional_latest
Oracle Linux 7 (x86_64) ghostscript-9.07-31.el7_6.6.src.rpmd3f0785286c5421f244df9e5c0e8d61deea7c4ae7a3bcd50421bce70a5e41928ELSA-2024-4549ol7_x86_64_latest
ghostscript-9.07-31.el7_6.6.src.rpmd3f0785286c5421f244df9e5c0e8d61deea7c4ae7a3bcd50421bce70a5e41928ELSA-2024-4549ol7_x86_64_optional_latest
ghostscript-9.07-31.el7_6.6.src.rpmd3f0785286c5421f244df9e5c0e8d61deea7c4ae7a3bcd50421bce70a5e41928ELSA-2024-4549ol7_x86_64_u6_patch
ghostscript-9.07-31.el7_6.6.i686.rpmbef3bff854f674996ac6278788d324264df3aef4a44d9a845ff7b8498d1fbbb2ELSA-2024-4549ol7_x86_64_latest
ghostscript-9.07-31.el7_6.6.i686.rpmbef3bff854f674996ac6278788d324264df3aef4a44d9a845ff7b8498d1fbbb2ELSA-2024-4549ol7_x86_64_u6_patch
ghostscript-9.07-31.el7_6.6.x86_64.rpmb2e2e463023657a7e5b63102a27fc724b998e8395845690fea6a6b73ac6e44e6ELSA-2024-4549ol7_x86_64_latest
ghostscript-9.07-31.el7_6.6.x86_64.rpmb2e2e463023657a7e5b63102a27fc724b998e8395845690fea6a6b73ac6e44e6ELSA-2024-4549ol7_x86_64_u6_patch
ghostscript-cups-9.07-31.el7_6.6.x86_64.rpm3f873dac744e9ddc6487139edb21a05fb16dbab47ac0812d9b496d08a3be28a2ELSA-2024-4549ol7_x86_64_latest
ghostscript-cups-9.07-31.el7_6.6.x86_64.rpm3f873dac744e9ddc6487139edb21a05fb16dbab47ac0812d9b496d08a3be28a2ELSA-2024-4549ol7_x86_64_u6_patch
ghostscript-devel-9.07-31.el7_6.6.i686.rpmc1cf19d840ba606bc6ed05befc5265cc1a5aaf202bd27c7565411676a5157622ELSA-2019-1017ol7_x86_64_optional_latest
ghostscript-devel-9.07-31.el7_6.6.x86_64.rpm423d9110580e8c21fb05ded55e20fe6cf4cb8ba93f59257572939888fac1710bELSA-2019-1017ol7_x86_64_optional_latest
ghostscript-doc-9.07-31.el7_6.6.noarch.rpm23f5d2a3d37cc7dcbc1857200dfee1047479841604d35f88ceb645419c8d02adELSA-2024-4549ol7_x86_64_optional_latest
ghostscript-gtk-9.07-31.el7_6.6.x86_64.rpm935e9d570bcf395392b633adeb570eb6c4d09045c30a96a6afdade844098f210ELSA-2024-4549ol7_x86_64_optional_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete