• [SECURITY] [DSA 4748-1] ghostscript security update

    From Moritz Muehlenhoff@21:1/5 to All on Tue Aug 25 21:30:01 2020
    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA512

    - ------------------------------------------------------------------------- Debian Security Advisory DSA-4748-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff August 25, 2020 https://www.debian.org/security/faq
    - -------------------------------------------------------------------------

    Package : ghostscript
    CVE ID : CVE-2020-16287 CVE-2020-16288 CVE-2020-16289 CVE-2020-16290
    CVE-2020-16291 CVE-2020-16292 CVE-2020-16293 CVE-2020-16294
    CVE-2020-16295 CVE-2020-16296 CVE-2020-16297 CVE-2020-16298
    CVE-2020-16299 CVE-2020-16300 CVE-2020-16301 CVE-2020-16302
    CVE-2020-16303 CVE-2020-16304 CVE-2020-16305 CVE-2020-16306
    CVE-2020-16307 CVE-2020-16308 CVE-2020-16309 CVE-2020-16310
    CVE-2020-17538

    Multiple security issues were discovered in Ghostscript, the GPL
    PostScript/PDF interpreter which could result in denial of service and potentially the execution of arbitrary code if malformed document files
    are processed.

    For the stable distribution (buster), these problems have been fixed in
    version 9.27~dfsg-2+deb10u4.

    We recommend that you upgrade your ghostscript packages.

    For the detailed security status of ghostscript please refer to
    its security tracker page at: https://security-tracker.debian.org/tracker/ghostscript

    Further information about Debian Security Advisories, how to apply
    these updates to your system and frequently asked questions can be
    found at: https://www.debian.org/security/

    Mailing list: debian-security-announce@lists.debian.org
    -----BEGIN PGP SIGNATURE-----

    iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAl9FZTkACgkQEMKTtsN8 TjaZyg/9FWnVBBKQpOWJ8szdP8ncWGKYMZiXeIczCFPCTJuBeAPptx0m+nEmaX9q mYaX+ng4L6hcvy5P38Yk/mnvScLZVzmIAb1RBiXirT10Kh1ftyLokuYKJ8o7fxqt FOeFrCq7Kc4jc6Ev9njSY0G+43TtWq3t8oyvp7OgduRpG4kX4Vx+5ZFmc31SqYLf 0e1x/8SuWItdaZrx42PPGmYp7eE6Mno4VPXplDs4cEaM9IDQa6HJ08tyWg55z0O4 vX2PaLwTTUEYQjrCFsx38bsOcLmmx3sD2e8s12Y8oDaKOkWKWW5s0Zs7xH25Wfpg EGFYsdyf7WKK3rEtS0mUnkOSIwxKkyhD3z71nLj4Y7AtCab/mkVTHI1VIVdTtIca ZdkjsPSV9Q94e07GB8gT3p2MCVC2Lbig22sBuwVIABeVem2fqfyclLI2KPWN0Rid VfG00ZROuIfm/cE57X2fRP5blfmnsmVdBAY45MvMjaPkNzHSWC4lHSP/XMRCECon HG5sdRpDKlmJuNoPRY/lBiyksfyPzs80qeMvMeX+I1My3uQkCv44TI+VGYPezaHM 0FJDkn7sI9TXyhbqJcaOeAfdL0bVASQTepFo9gs0YjZLZbLt5Fdn0AOafeFDkWcx yuZNvfIxoiaDYQS39qHNEj4SoG2f9VkloFvUAKB+v5zn7aylKJg=
    =EhRP
    -----END PGP SIGNATURE-----

    --- SoupGate-Win32 v1.05
    * Origin: fsxNet Usenet Gateway (21:1/5)