cbcvebase.
CVE-2010-4820
published 2014-10-27

CVE-2010-4820: Untrusted search path vulnerability in Ghostscript 8.62 allows local users to execute arbitrary PostScript code via a Trojan horse Postscript library file in…

medium4.4CVSS 3.1
AVLACMAuNCPIPAP
Untrusted search path vulnerability in Ghostscript 8.62 allows local users to execute arbitrary PostScript code via a Trojan horse Postscript library file in Encoding/ under the current working directory, a different vulnerability than CVE-2010-2055.

Affected

38 ranges· showing 25
VendorProductVersion rangeFixed in
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexafpl_ghostscript
artifexghostscript>= 0 < 8.71~dfsg2-6.18.71~dfsg2-6.1
artifexghostscript>= 0 < 8.71~dfsg2-6.18.71~dfsg2-6.1
artifexghostscript>= 0 < 8.71~dfsg2-6.18.71~dfsg2-6.1
artifexghostscript>= 0 < 8.71~dfsg2-6.18.71~dfsg2-6.1
artifexghostscript_fonts
artifexghostscript_fonts
artifexgpl_ghostscript<= 8.71
artifexgpl_ghostscript
artifexgpl_ghostscript

CVSS provenance

nvd7.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.2HIGH