CVE-2010-4054
published 2010-10-23CVE-2010-4054: The gs_type2_interpret function in Ghostscript allows remote attackers to cause a denial of service (incorrect pointer dereference and application crash) via…
PriorityP417medium4.3CVSS 2.0
AVNACMAuNCNINAP
EPSS
2.66%
84.1th percentile
The gs_type2_interpret function in Ghostscript allows remote attackers to cause a denial of service (incorrect pointer dereference and application crash) via crafted font data in a compressed data stream, aka bug 691043.
Affected
38 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | afpl_ghostscript | — | — |
| artifex | ghostscript | >= 0 < 8.71~dfsg-1 | 8.71~dfsg-1 |
| artifex | ghostscript | >= 0 < 8.71~dfsg-1 | 8.71~dfsg-1 |
| artifex | ghostscript | >= 0 < 8.71~dfsg-1 | 8.71~dfsg-1 |
| artifex | ghostscript | >= 0 < 8.71~dfsg-1 | 8.71~dfsg-1 |
| artifex | ghostscript_fonts | — | — |
| artifex | ghostscript_fonts | — | — |
| artifex | gpl_ghostscript | — | — |
| artifex | gpl_ghostscript | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv4.3MEDIUM
vendor_ubuntu9.3CRITICAL
vendor_debian4.3LOW
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Ghostscript vulnerabilities
vendor_ubuntu·2012-01-04·CVSS 9.3
CVE-2008-3520 [CRITICAL] Ghostscript vulnerabilities
Title: Ghostscript vulnerabilities
Summary: Ghostscript could be made to crash or run programs as your login if it
opened a specially crafted file.
It was discovered that Ghostscript did not correctly handle memory
allocation when parsing certain malformed JPEG-2000 images. If a user or
automated system were tricked into opening a specially crafted image, an
attacker could cause a denial of service and possibly execute arbitrary
code with user privileges. (CVE-2008-3520)
It was discovered that Ghostscript did not correctly handle certain
formatting operations when parsing JPEG-2000 images. If a user or automated
system were tricked into opening a specially crafted image, an attacker
could cause a denial of service and possibly execute arbitrary code with
user privileges. (CVE-2008-3522)
Red Hat
ghostscript: glyph data access improper input validation
vendor_redhat·2010-01-04·CVSS 4.3
CVE-2010-4054 [MEDIUM] CWE-20 ghostscript: glyph data access improper input validation
ghostscript: glyph data access improper input validation
The gs_type2_interpret function in Ghostscript allows remote attackers to cause a denial of service (incorrect pointer dereference and application crash) via crafted font data in a compressed data stream, aka bug 691043.
Debian
CVE-2010-4054: ghostscript - The gs_type2_interpret function in Ghostscript allows remote attackers to cause ...
vendor_debian·2010·CVSS 4.3
CVE-2010-4054 [MEDIUM] CVE-2010-4054: ghostscript - The gs_type2_interpret function in Ghostscript allows remote attackers to cause ...
The gs_type2_interpret function in Ghostscript allows remote attackers to cause a denial of service (incorrect pointer dereference and application crash) via crafted font data in a compressed data stream, aka bug 691043.
Scope: local
bookworm: resolved (fixed in 8.71~dfsg-1)
bullseye: resolved (fixed in 8.71~dfsg-1)
forky: resolved (fixed in 8.71~dfsg-1)
sid: resolved (fixed in 8.71~dfsg-1)
trixie: resolved (fixed in 8.71~dfsg-1)
GHSA
GHSA-v2wp-vq4f-gx8c: The gs_type2_interpret function in Ghostscript allows remote attackers to cause a denial of service (incorrect pointer dereference and application cra
ghsa_unreviewed·2022-05-17
CVE-2010-4054 [MEDIUM] CWE-119 GHSA-v2wp-vq4f-gx8c: The gs_type2_interpret function in Ghostscript allows remote attackers to cause a denial of service (incorrect pointer dereference and application cra
The gs_type2_interpret function in Ghostscript allows remote attackers to cause a denial of service (incorrect pointer dereference and application crash) via crafted font data in a compressed data stream, aka bug 691043.
OSV
CVE-2010-4054: The gs_type2_interpret function in Ghostscript allows remote attackers to cause a denial of service (incorrect pointer dereference and application cra
osv·2010-10-23·CVSS 4.3
CVE-2010-4054 [MEDIUM] CVE-2010-4054: The gs_type2_interpret function in Ghostscript allows remote attackers to cause a denial of service (incorrect pointer dereference and application cra
The gs_type2_interpret function in Ghostscript allows remote attackers to cause a denial of service (incorrect pointer dereference and application crash) via crafted font data in a compressed data stream, aka bug 691043.
Suricata
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template INSERT
suricata·2010-07-30·CVSS 6.8
CVE-2007-3214 [MEDIUM] ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template INSERT
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template INSERT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template INSERT"; flow:established,to_server; http.uri; content:"/style.php?"; nocase; content:"template="; nocase; content:"INSERT"; nocase; content:"INTO"; nocase; distance:0; reference:cve,CVE-2007-3214; reference:url,www.milw0rm.com/exploits/4054; classtype:web-application-attack; sid:2005338; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_11, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_tec
Suricata
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template UPDATE
suricata·2010-07-30·CVSS 6.8
CVE-2007-3214 [MEDIUM] ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template UPDATE
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template UPDATE
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template UPDATE"; flow:established,to_server; http.uri; content:"/style.php?"; nocase; content:"template="; nocase; content:"UPDATE"; nocase; content:"SET"; nocase; distance:0; reference:cve,CVE-2007-3214; reference:url,www.milw0rm.com/exploits/4054; classtype:web-application-attack; sid:2005341; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_11, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_tech
Suricata
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template ASCII
suricata·2010-07-30·CVSS 6.8
CVE-2007-3214 [MEDIUM] ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template ASCII
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template ASCII
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template ASCII"; flow:established,to_server; http.uri; content:"/style.php?"; nocase; content:"template="; nocase; content:"ASCII("; nocase; content:"SELECT"; nocase; distance:0; reference:cve,CVE-2007-3214; reference:url,www.milw0rm.com/exploits/4054; classtype:web-application-attack; sid:2005340; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_11, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_tec
Suricata
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template SELECT
suricata·2010-07-30·CVSS 6.8
CVE-2007-3214 [MEDIUM] ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template SELECT
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template SELECT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template SELECT"; flow:established,to_server; http.uri; content:"/style.php?"; nocase; content:"template="; nocase; content:"SELECT"; nocase; content:"FROM"; nocase; distance:0; reference:cve,CVE-2007-3214; reference:url,www.milw0rm.com/exploits/4054; classtype:web-application-attack; sid:2005336; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_11, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_tec
Suricata
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template DELETE
suricata·2010-07-30·CVSS 6.8
CVE-2007-3214 [MEDIUM] ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template DELETE
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template DELETE
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template DELETE"; flow:established,to_server; http.uri; content:"/style.php?"; nocase; content:"template="; nocase; content:"DELETE"; nocase; content:"FROM"; nocase; distance:0; reference:cve,CVE-2007-3214; reference:url,www.milw0rm.com/exploits/4054; classtype:web-application-attack; sid:2005339; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_11, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_tec
Suricata
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template UNION SELECT
suricata·2010-07-30·CVSS 6.8
CVE-2007-3214 [MEDIUM] ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template UNION SELECT
ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template UNION SELECT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS e-Vision CMS SQL Injection Attempt -- style.php template UNION SELECT"; flow:established,to_server; http.uri; content:"/style.php?"; nocase; content:"template="; nocase; content:"UNION"; nocase; content:"SELECT"; nocase; distance:0; reference:cve,CVE-2007-3214; reference:url,www.milw0rm.com/exploits/4054; classtype:web-application-attack; sid:2005337; rev:9; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_11, mitre_tactic_id TA0001, mitre_tactic_name Initial_Acce
No public exploits indexed.
Bugzilla
CVE-2010-4054 ghostscript: NULL pointer dereference by processing garbage font data in type1 and type2 font interpreters [fedora-12]
bugzilla·2010-10-28·CVSS 4.3
CVE-2010-4054 [MEDIUM] CVE-2010-4054 ghostscript: NULL pointer dereference by processing garbage font data in type1 and type2 font interpreters [fedora-12]
CVE-2010-4054 ghostscript: NULL pointer dereference by processing garbage font data in type1 and type2 font interpreters [fedora-12]
fedora-12 tracking bug for ghostscript: see blocks bug list for full details of the security issue(s).
This bug is never intended to be made public, please put any public notes
in the 'blocks' bugs.
[bug automatically created by: add-tracking-bugs]
Discussion:
https://admin.fedoraproject.org/updates/ghostscript-8.71-4.fc12
FEDORA-2010-2576
Date Released: 2010-02-23 04:07:42
Bugzilla
CVE-2010-4054 ghostscript: glyph data access improper input validation
bugzilla·2010-10-24·CVSS 4.3
CVE-2010-4054 [MEDIUM] CVE-2010-4054 ghostscript: glyph data access improper input validation
CVE-2010-4054 ghostscript: glyph data access improper input validation
Common Vulnerabilities and Exposures assigned an identifier CVE-2010-4054 to
the following vulnerability:
The gs_type2_interpret function in Ghostscript allows remote attackers
to cause a denial of service (incorrect pointer dereference and
application crash) via crafted font data in a compressed data stream,
aka bug 691043.
References:
[1] http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4054
[2] http://ghostscript.com/pipermail/gs-cvs/2010-January/010333.html
[3] http://www.kb.cert.org/vuls/id/538191
Upstream bug report:
[4] http://bugs.ghostscript.com/show_bug.cgi?id=691043
Discussion:
This issue affects the versions of the ghostscript package, as shipped
with Red Hat Enterprise Linux 3, 4, and 5.
--
Th
http://ghostscript.com/pipermail/gs-cvs/2010-January/010333.htmlhttp://rhn.redhat.com/errata/RHSA-2012-0096.htmlhttp://security.gentoo.org/glsa/glsa-201412-17.xmlhttp://www.kb.cert.org/vuls/id/538191https://rhn.redhat.com/errata/RHSA-2012-0095.htmlhttp://ghostscript.com/pipermail/gs-cvs/2010-January/010333.htmlhttp://rhn.redhat.com/errata/RHSA-2012-0096.htmlhttp://security.gentoo.org/glsa/glsa-201412-17.xmlhttp://www.kb.cert.org/vuls/id/538191https://rhn.redhat.com/errata/RHSA-2012-0095.html
2010-10-23
Published