Solution
Please Install the Updated Packages.
Insight
A security issue was identified and fixed in ghostscript:
An integer overflow flaw, leading to a heap-based buffer overflow, was found in Ghostscript'
s International Color Consortium Format library
(icclib). An attacker could create a specially-crafted PostScript or PDF file with embedded images that would cause Ghostscript to crash or, potentially, execute arbitrary code with the privileges of the user running Ghostscript (CVE-2012-4405).
The updated packages have been patched to correct this issue.
Update:
Packages for Mandriva Linux 2011 is being provided.
Affected
ghostscript on Mandriva Linux 2011.0
Severity
Classification
-
CVE CVE-2012-4405 -
CVSS Base Score: 6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities