Severity
5.5MEDIUM
EPSS
0.0%
top 89.44%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 23

Description

A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was not included in RHSA-2021:1852-06 advisory as it was claimed to be. This issue only affects the ghostscript package as shipped with Red Hat Enterprise Linux 8.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

Also affects: Enterprise Linux 8.0

🔴Vulnerability Details

2
CVEList
Ghostscript: incomplete fix for cve-2020-163052023-08-23
GHSA
GHSA-jgj3-64jr-4g3x: A flaw was found in ghostscript2023-08-23

📋Vendor Advisories

2
Red Hat
ghostscript: Incomplete fix for CVE-2020-163052023-08-23
Debian
CVE-2023-4042: ghostscript - A flaw was found in ghostscript. The fix for CVE-2020-16305 in ghostscript was n...2023