{"cves":[{"id":"CVE-2020-13285","published":"2020-08-13T13:15:00","updated_at":"2025-08-25T23:19:19.814270+00:00","description":"\nFor GitLab before 13.0.12, 13.1.6, 13.2.3 a cross-site scripting (XSS)\nvulnerability exists in the issue reference number tooltip.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.4,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":5.4,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://about.gitlab.com/releases/2020/08/05/gitlab-13-2-3-released/","https://www.cve.org/CVERecord?id=CVE-2020-13285"],"bugs":[""],"patches":{"gitlab":[]},"tags":{},"packages":[{"name":"gitlab","source":"https://ubuntu.com/security/cve?package=gitlab","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gitlab","debian":"https://tracker.debian.org/pkg/gitlab","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"debian: Only affects GitLab 12.9 and later","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not present","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2020-13283","published":"2020-08-13T13:15:00","updated_at":"2025-08-25T23:19:19.814270+00:00","description":"\nFor GitLab before 13.0.12, 13.1.6, 13.2.3 a cross-site scripting\nvulnerability exists in the issues list via milestone title.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.4,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":5.4,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://about.gitlab.com/releases/2020/08/05/gitlab-13-2-3-released/","https://www.cve.org/CVERecord?id=CVE-2020-13283"],"bugs":[""],"patches":{"gitlab":[]},"tags":{},"packages":[{"name":"gitlab","source":"https://ubuntu.com/security/cve?package=gitlab","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gitlab","debian":"https://tracker.debian.org/pkg/gitlab","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not present","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2020-13282","published":"2020-08-13T13:15:00","updated_at":"2025-08-25T23:19:19.814270+00:00","description":"\nFor GitLab before 13.0.12, 13.1.6, 13.2.3 after a group transfer occurs,\nmembers from a parent group keep their access level on the subgroup leading\nto improper access.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":3.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:L/I:L/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":3.5,"baseSeverity":"LOW"}}},"status":"active","mitigation":"","references":["https://about.gitlab.com/releases/2020/08/05/gitlab-13-2-3-released/","https://www.cve.org/CVERecord?id=CVE-2020-13282"],"bugs":[""],"patches":{"gitlab":[]},"tags":{},"packages":[{"name":"gitlab","source":"https://ubuntu.com/security/cve?package=gitlab","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gitlab","debian":"https://tracker.debian.org/pkg/gitlab","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support, was needed","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2020-13280","published":"2020-08-13T13:15:00","updated_at":"2025-08-25T23:19:14.201816+00:00","description":"\nFor GitLab before 13.0.12, 13.1.6, 13.2.3 a memory exhaustion flaw exists\ndue to excessive logging of an invite email error message.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":6.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":6.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://about.gitlab.com/releases/2020/08/05/gitlab-13-2-3-released/","https://www.cve.org/CVERecord?id=CVE-2020-13280"],"bugs":[""],"patches":{"gitlab":[]},"tags":{},"packages":[{"name":"gitlab","source":"https://ubuntu.com/security/cve?package=gitlab","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gitlab","debian":"https://tracker.debian.org/pkg/gitlab","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support, was needed","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2020-8689","published":"2020-08-13T04:15:00","updated_at":"2025-08-25T23:29:46.007481+00:00","description":"\nImproper buffer restrictions in the Intel(R) Wireless for Open Source\nbefore version 1.5 may allow an unauthenticated user to potentially enable\ndenial of service via adjacent access.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":6.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"ADJACENT","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":6.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00379.html","https://www.cve.org/CVERecord?id=CVE-2020-8689"],"bugs":[""],"patches":{"iwd":[]},"tags":{},"packages":[{"name":"iwd","source":"https://ubuntu.com/security/cve?package=iwd","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=iwd","debian":"https://tracker.debian.org/pkg/iwd","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"1.5-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.5-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2020-17538","published":"2020-08-13T03:15:00","updated_at":"2025-08-04T19:35:05.216760+00:00","description":"\nA buffer overflow vulnerability in GetNumSameData() in\ncontrib/lips4/gdevlips.c of Artifex Software GhostScript from v9.18 to\nv9.50 allows a remote attacker to cause a denial of service via a crafted\nPDF file. This is fixed in v9.51.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"same commit as CVE-2020-16296"}],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-17538"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701792"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=9f39ed4a92578a020ae10459643e1fe72573d134"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16310","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:37.588089+00:00","description":"\nA division by zero vulnerability in dot24_print_page() in\ndevices/gdevdm24.c of Artifex Software GhostScript v9.50 allows a remote\nattacker to cause a denial of service via a crafted PDF file. This is fixed\nin v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16310"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701828"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=eaba1d97b62831b42c51840cc8ee2bc4576c942e"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16309","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:37.588089+00:00","description":"\nA buffer overflow vulnerability in lxm5700m_print_page() in\ndevices/gdevlxm.c of Artifex Software GhostScript v9.50 allows a remote\nattacker to cause a denial of service via a crafted eps file. This is fixed\nin v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16309"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701827"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=a6f7464dddc689386668a38b92dfd03cc1b38a10"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16308","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:33.046116+00:00","description":"\nA buffer overflow vulnerability in p_print_image() in devices/gdevcdj.c of\nArtifex Software GhostScript v9.50 allows a remote attacker to cause a\ndenial of service via a crafted PDF file. This is fixed in v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16308"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701829"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=af004276fd8f6c305727183c159b83021020f7d6"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16307","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:33.046116+00:00","description":"\nA null pointer dereference vulnerability in devices/vector/gdevtxtw.c and\npsi/zbfont.c of Artifex Software GhostScript v9.50 allows a remote attacker\nto cause a denial of service via a crafted postscript file. This is fixed\nin v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16307"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701822"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=407c98a38c3a6ac1681144ed45cc2f4fc374c91f"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16306","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:33.046116+00:00","description":"\nA null pointer dereference vulnerability in devices/gdevtsep.c of Artifex\nSoftware GhostScript v9.50 allows a remote attacker to cause a denial of\nservice via a crafted postscript file. This is fixed in v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16306"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701821"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=aadb53eb834b3def3ef68d78865ff87a68901804"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16305","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:33.046116+00:00","description":"\nA buffer overflow vulnerability in pcx_write_rle() in\ncontrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a\nremote attacker to cause a denial of service via a crafted PDF file. This\nis fixed in v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16305"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701819"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=2793769ff107d8d22dadd30c6e68cd781b569550"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16304","published":"2020-08-13T03:15:00","updated_at":"2025-08-04T19:35:05.216760+00:00","description":"\nA buffer overflow vulnerability in image_render_color_thresh() in\nbase/gxicolor.c of Artifex Software GhostScript v9.18 to v9.50 allows a\nremote attacker to escalate privileges via a crafted eps file. This is\nfixed in v9.51.","ubuntu_description":"","notes":[{"author":"Debian","note":"PoC requires de8b6458abaeb9d0b14f02377f3e617f2854e647 (9.27) to\ntrigger"}],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16304"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701816"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=027c546e0dd11e0526f1780a7f3c2c66acffe209"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16303","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:33.046116+00:00","description":"\nA use-after-free vulnerability in xps_finish_image_path() in\ndevices/vector/gdevxps.c of Artifex Software GhostScript v9.50 allows a\nremote attacker to escalate privileges via a crafted PDF file. This is\nfixed in v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16303"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701818"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=94d8955cb7725eb5f3557ddc02310c76124fdd1a"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16302","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:33.046116+00:00","description":"\nA buffer overflow vulnerability in jetp3852_print_page() in\ndevices/gdev3852.c of Artifex Software GhostScript v9.50 allows a remote\nattacker to escalate privileges via a crafted PDF file. This is fixed in\nv9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16302"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701815"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=366ad48d076c1aa4c8f83c65011258a04e348207"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16301","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:33.046116+00:00","description":"\nA buffer overflow vulnerability in okiibm_print_page1() in\ndevices/gdevokii.c of Artifex Software GhostScript v9.50 allows a remote\nattacker to cause a denial of service via a crafted PDF file. This is fixed\nin v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16301"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701808"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=f54414c8b15b2c27d1dcadd92cfe84f6d15f18dc"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16300","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:33.046116+00:00","description":"\nA buffer overflow vulnerability in tiff12_print_page() in\ndevices/gdevtfnx.c of Artifex Software GhostScript v9.50 allows a remote\nattacker to cause a denial of service via a crafted PDF file. This is fixed\nin v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16300"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701807"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=714e8995cd582d418276915cbbec3c70711fb19e"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16299","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:33.046116+00:00","description":"\nA Division by Zero vulnerability in bj10v_print_page() in\ncontrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a\nremote attacker to cause a denial of service via a crafted PDF file. This\nis fixed in v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16299"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701801"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=19cebe708b9ee3d9e0f8bcdd79dbc6ef9ddc70d2","upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=4fcbece468706e0e89ed2856729b2ccacbc112be"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16298","published":"2020-08-13T03:15:00","updated_at":"2025-08-25T23:22:28.258151+00:00","description":"\nA buffer overflow vulnerability in mj_color_correct() in\ncontrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a\nremote attacker to cause a denial of service via a crafted PDF file. This\nis fixed in v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16298"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701799"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=849e74e5ab450dd581942192da7101e0664fa5af"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]},{"id":"CVE-2020-16297","published":"2020-08-13T03:15:00","updated_at":"2025-08-04T19:35:05.216760+00:00","description":"\nA buffer overflow vulnerability in FloydSteinbergDitheringC() in\ncontrib/gdevbjca.c of Artifex Software GhostScript v9.18 to v9.50 allows a\nremote attacker to cause a denial of service via a crafted PDF file. This\nis fixed in v9.51.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-4469-1","https://www.cve.org/CVERecord?id=CVE-2020-16297"],"bugs":["https://bugs.ghostscript.com/show_bug.cgi?id=701800"],"patches":{"ghostscript":["upstream: https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=bf72f1a3dd5392ee8291e3b1518a0c2c5dc6ba39"]},"tags":{},"packages":[{"name":"ghostscript","source":"https://ubuntu.com/security/cve?package=ghostscript","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ghostscript","debian":"https://tracker.debian.org/pkg/ghostscript","statuses":[{"release_codename":"bionic","status":"released","description":"9.26~dfsg+0-0ubuntu0.18.04.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"9.50~dfsg-5ubuntu4.2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"9.51~dfsg-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"9.26~dfsg+0-0ubuntu0.16.04.13","component":null,"pocket":"security"}]}],"notices_ids":["USN-4469-1"],"notices":[{"id":"USN-4469-1","title":"Ghostscript vulnerabilities","summary":"Several security issues were fixed in Ghostscript.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2020-08-24T13:05:47.114700","description":"It was discovered that Ghostscript incorrectly handled certain document\nfiles. If a user or automated system were tricked into processing a\nspecially crafted file, a remote attacker could use this issue to cause\nGhostscript to crash, resulting in a denial of service, or possibly\nexecute arbitrary code.\n","is_hidden":false,"release_packages":{"bionic":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.18.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.18.04.13","pocket":"security"}],"focal":[{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-doc","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"ghostscript-x","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs-dev","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"},{"name":"libgs9-common","version":"9.50~dfsg-5ubuntu4.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.50~dfsg-5ubuntu4.2","pocket":"security"}],"xenial":[{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","description":"PostScript and PDF interpreter","is_source":true},{"name":"ghostscript","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-doc","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"ghostscript-x","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs-dev","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"},{"name":"libgs9-common","version":"9.26~dfsg+0-0ubuntu0.16.04.13","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/ghostscript","version_link":"https://launchpad.net/ubuntu/+source/ghostscript/9.26~dfsg+0-0ubuntu0.16.04.13","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2020-16297","CVE-2020-16299","CVE-2020-16310","CVE-2020-16295","CVE-2020-16301","CVE-2020-16302","CVE-2020-16290","CVE-2020-16305","CVE-2020-16296","CVE-2020-16300","CVE-2020-16294","CVE-2020-16292","CVE-2020-16309","CVE-2020-16288","CVE-2020-16307","CVE-2020-16303","CVE-2020-16298","CVE-2020-16293","CVE-2020-16304","CVE-2020-16291","CVE-2020-17538","CVE-2020-16306","CVE-2020-16287","CVE-2020-16308","CVE-2020-16289"]}]}],"offset":44840,"limit":20,"total_results":79316}