[ GLSA 200803-14 ] Ghostscript: Buffer overflow

2008-03-08 Thread Pierre-Yves Rofes
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Severity: Normal Title: Ghostscript: Buffer overflow Date: March 08, 2008 Bugs: #208999 ID: 200803-14

Ghostscript buffer overflow

2008-02-29 Thread Chris Evans
Hi, Buffer overflow in Ghostscript. A useful attack vector because a lot of UNIX workstations will put PS files on the web through Ghostscript. The problem is a stack-based buffer overflow in the zseticcspace() function in zicc.c. The issue is over-trust of the length of a postscript array which