RULE(RULE ID:336967)

Rule General Information
Release Date: 2022-08-18
Rule Name: GhostScript Remote Code Execution Vulnerability (CVE-2019-6116)
Severity:
CVE ID:
Rule Protection Details
Description: In Artifex Ghostscript through 9.26, ephemeral or transient procedures can allow access to system operators, leading to remote code execution.
Impact: An attacker can execute arbitrary code via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference: SecurityFocusBID:106700
ExploitDB:46242
http://lists.opensuse.org/opensuse-security-announce/2019-01/msg00047.html
http://lists.opensuse.org/opensuse-security-announce/2019-01/msg00048.html
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
https://www.ghostscript.com/