mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-09 23:27:33 +02:00
869 B
869 B
CVE-2017-11714
Description
psi/ztoken.c in Artifex Ghostscript 9.21 mishandles references to the scanner state structure, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PostScript document, related to an out-of-bounds read in the igc_reloc_struct_ptr function in psi/igc.c.
POC
Reference
- https://bugs.ghostscript.com/show_bug.cgi?id=698158
- https://bugs.ghostscript.com/show_bug.cgi?id=698158