oss-sec mailing list archives

Re: ghostscript CVE-2019-10216: -dSAFER escape via .buildfont1


From: Bob Friesenhahn <bfriesen () simple dallas tx us>
Date: Mon, 12 Aug 2019 09:46:55 -0500 (CDT)

Is it known if this issue also impacts the PDF reader? I see that the involved code is Resource/Init/gs_type1.ps which is presumably related to Postscript Type 1 fonts, which might be included in a PDF file.

Bob
--
Bob Friesenhahn
bfriesen () simple dallas tx us, http://www.simplesystems.org/users/bfriesen/
GraphicsMagick Maintainer,    http://www.GraphicsMagick.org/
Public Key,     http://www.simplesystems.org/users/bfriesen/public-key.txt


Current thread: