CVE-2008-0411
published 2008-02-28CVE-2008-0411: Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitrary code via a…
PriorityP341medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EXPLOIT
EPSS
14.41%
96.2th percentile
Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitrary code via a postscript (.ps) file containing a long Range array in a .seticcspace operator.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| artifex | ghostscript | >= 0 < 8.61.dfsg.1-1.1 | 8.61.dfsg.1-1.1 |
| artifex | ghostscript | >= 0 < 8.61.dfsg.1-1.1 | 8.61.dfsg.1-1.1 |
| artifex | ghostscript | >= 0 < 8.61.dfsg.1-1.1 | 8.61.dfsg.1-1.1 |
| artifex | ghostscript | >= 0 < 8.61.dfsg.1-1.1 | 8.61.dfsg.1-1.1 |
| debian | ghostscript | < ghostscript 8.61.dfsg.1-1.1 (bookworm) | ghostscript 8.61.dfsg.1-1.1 (bookworm) |
| ghostscript | ghostscript | <= 8.61 | — |
| ghostscript | ghostscript | — | — |
| ghostscript | ghostscript | — | — |
| ghostscript | ghostscript | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv6.8MEDIUM
vendor_debian6.8MEDIUM
vendor_redhat6.8MEDIUM
vendor_ubuntu6.8MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3xp4-6gjh-55fh: Stack-based buffer overflow in the zseticcspace function in zicc
ghsa_unreviewed·2022-05-01
CVE-2008-0411 [MEDIUM] CWE-119 GHSA-3xp4-6gjh-55fh: Stack-based buffer overflow in the zseticcspace function in zicc
Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitrary code via a postscript (.ps) file containing a long Range array in a .seticcspace operator.
OSV
CVE-2008-0411: Stack-based buffer overflow in the zseticcspace function in zicc
osv·2008-02-28·CVSS 6.8
CVE-2008-0411 [MEDIUM] CVE-2008-0411: Stack-based buffer overflow in the zseticcspace function in zicc
Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitrary code via a postscript (.ps) file containing a long Range array in a .seticcspace operator.
Ubuntu
Ghostscript vulnerability
vendor_ubuntu·2008-04-09·CVSS 6.8
CVE-2008-0411 [MEDIUM] Ghostscript vulnerability
Title: Ghostscript vulnerability
Summary: Ghostscript vulnerability
Chris Evans discovered that Ghostscript contained a buffer overflow in
its color space handling code. If a user or automated system were
tricked into opening a crafted Postscript file, an attacker could cause
a denial of service or execute arbitrary code with privileges of the
user invoking the program. (CVE-2008-0411)
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Red Hat
ghostscript: stack-based buffer overflow in .seticcspace operator
vendor_redhat·2008-02-27·CVSS 6.8
CVE-2008-0411 [MEDIUM] CWE-121 ghostscript: stack-based buffer overflow in .seticcspace operator
ghostscript: stack-based buffer overflow in .seticcspace operator
Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitrary code via a postscript (.ps) file containing a long Range array in a .seticcspace operator.
Debian
CVE-2008-0411: ghostscript - Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscrip...
vendor_debian·2008·CVSS 6.8
CVE-2008-0411 [MEDIUM] CVE-2008-0411: ghostscript - Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscrip...
Stack-based buffer overflow in the zseticcspace function in zicc.c in Ghostscript 8.61 and earlier allows remote attackers to execute arbitrary code via a postscript (.ps) file containing a long Range array in a .seticcspace operator.
Scope: local
bookworm: resolved (fixed in 8.61.dfsg.1-1.1)
bullseye: resolved (fixed in 8.61.dfsg.1-1.1)
forky: resolved (fixed in 8.61.dfsg.1-1.1)
sid: resolved (fixed in 8.61.dfsg.1-1.1)
trixie: resolved (fixed in 8.61.dfsg.1-1.1)
No detection rules found.
http://lists.opensuse.org/opensuse-security-announce/2008-02/msg00009.htmlhttp://scary.beasts.org/security/CESA-2008-001.htmlhttp://secunia.com/advisories/29101http://secunia.com/advisories/29103http://secunia.com/advisories/29112http://secunia.com/advisories/29135http://secunia.com/advisories/29147http://secunia.com/advisories/29154http://secunia.com/advisories/29169http://secunia.com/advisories/29196http://secunia.com/advisories/29314http://secunia.com/advisories/29768http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.370633http://wiki.rpath.com/Advisories:rPSA-2008-0082http://www.debian.org/security/2008/dsa-1510http://www.gentoo.org/security/en/glsa/glsa-200803-14.xmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2008:055http://www.redhat.com/support/errata/RHSA-2008-0155.htmlhttp://www.securityfocus.com/archive/1/488932/100/0/threadedhttp://www.securityfocus.com/archive/1/488946/100/0/threadedhttp://www.securityfocus.com/bid/28017http://www.securitytracker.com/id?1019511http://www.ubuntu.com/usn/usn-599-1http://www.vupen.com/english/advisories/2008/0693/referenceshttps://issues.rpath.com/browse/RPL-2217https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9557https://www.redhat.com/archives/fedora-package-announce/2008-March/msg00085.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-02/msg00009.htmlhttp://scary.beasts.org/security/CESA-2008-001.htmlhttp://secunia.com/advisories/29101http://secunia.com/advisories/29103http://secunia.com/advisories/29112http://secunia.com/advisories/29135http://secunia.com/advisories/29147http://secunia.com/advisories/29154http://secunia.com/advisories/29169http://secunia.com/advisories/29196http://secunia.com/advisories/29314http://secunia.com/advisories/29768http://slackware.com/security/viewer.php?l=slackware-security&y=2008&m=slackware-security.370633http://wiki.rpath.com/Advisories:rPSA-2008-0082http://www.debian.org/security/2008/dsa-1510http://www.gentoo.org/security/en/glsa/glsa-200803-14.xmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2008:055http://www.redhat.com/support/errata/RHSA-2008-0155.htmlhttp://www.securityfocus.com/archive/1/488932/100/0/threadedhttp://www.securityfocus.com/archive/1/488946/100/0/threadedhttp://www.securityfocus.com/bid/28017http://www.securitytracker.com/id?1019511http://www.ubuntu.com/usn/usn-599-1http://www.vupen.com/english/advisories/2008/0693/referenceshttps://issues.rpath.com/browse/RPL-2217https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9557https://www.redhat.com/archives/fedora-package-announce/2008-March/msg00085.html
2008-02-28
Published