Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2019-10216
Description:In ghostscript before version 9.50, the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges and access files outside of restricted areas.
Test IDs: 1.3.6.1.4.1.25623.1.1.4.2019.2347.1   1.3.6.1.4.1.25623.1.0.852702   1.3.6.1.4.1.25623.1.0.852844   1.3.6.1.4.1.25623.1.0.891880   1.3.6.1.4.1.25623.1.0.704499   1.3.6.1.4.1.25623.1.1.4.2019.2348.1   1.3.6.1.4.1.25623.1.1.2.2020.1100   1.3.6.1.4.1.25623.1.0.844129   1.3.6.1.4.1.25623.1.1.10.2019.0236   1.3.6.1.4.1.25623.1.0.876705   1.3.6.1.4.1.25623.1.1.2.2019.2076  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2019-10216
https://security.gentoo.org/glsa/202004-03




© 1998-2025 E-Soft Inc. All rights reserved.