cbcvebase.
CVE-2019-3839
published 2019-05-16

CVE-2019-3839: It was found that in ghostscript some privileged operators remained accessible from various places after the CVE-2019-6116 fix. A specially crafted PostScript…

PriorityP341high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
1.76%
75.4th percentile
It was found that in ghostscript some privileged operators remained accessible from various places after the CVE-2019-6116 fix. A specially crafted PostScript file could use this flaw in order to, for example, have access to the file system outside of the constrains imposed by -dSAFER. Ghostscript versions before 9.27 are vulnerable.

Affected

20 ranges
VendorProductVersion rangeFixed in
artifexghostscript< 9.279.27
artifexghostscript<= 9.26
artifexghostscript>= 0 < 9.27~dfsg-19.27~dfsg-1
artifexghostscript>= 0 < 9.27~dfsg-19.27~dfsg-1
artifexghostscript>= 0 < 9.27~dfsg-19.27~dfsg-1
artifexghostscript>= 0 < 9.27~dfsg-19.27~dfsg-1
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debianghostscript< ghostscript 9.27~dfsg-1 (bookworm)ghostscript 9.27~dfsg-1 (bookworm)
fedoraprojectfedora
fedoraprojectfedora
opensuseleap
opensuseleap
redhatenterprise_linux
redhatenterprise_linux
the_ghostscript_projectghostscript

CVSS provenance

nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv3.07.3HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.