Univention Bugzilla – Bug 50002
ghostscript: Multiple issues (4.3)
Last modified: 2019-08-14 17:05:17 CEST
New Debian ghostscript 9.26a~dfsg-0+deb9u4 fixes: This update addresses the following issue: * -dSAFER escape via .buildfont1 (701394) (CVE-2019-10216)
--- mirror/ftp/4.3/unmaintained/component/4.3-4-errata/source/ghostscript_9.26a~dfsg-0+deb9u3.dsc +++ apt/ucs_4.3-0-errata4.3-4/source/ghostscript_9.26a~dfsg-0+deb9u4.dsc @@ -1,3 +1,8 @@ +9.26a~dfsg-0+deb9u4 [Thu, 08 Aug 2019 07:10:18 +0200] Salvatore Bonaccorso <carnil@debian.org>: + + * Non-maintainer upload by the Security Team. + * protect use of .forceput with executeonly (CVE-2019-10216) + 9.26a~dfsg-0+deb9u3 [Fri, 10 May 2019 15:21:33 +0200] Salvatore Bonaccorso <carnil@debian.org>: * Non-maintainer upload by the Security Team. <http://10.200.17.11/4.3-4/#3440152646180894508>
OK: yaml OK: announce_errata OK: patch OK: piuparts [4.3-4] 26c4ba4382 Bug #50002: ghostscript 9.26a~dfsg-0+deb9u4 doc/errata/staging/ghostscript.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) [4.3-4] 65fc2c575b Bug #50002: ghostscript 9.26a~dfsg-0+deb9u4 doc/errata/staging/ghostscript.yaml | 12 ++++++++++++ 1 file changed, 12 insertions(+)
<http://errata.software-univention.de/ucs/4.3/558.html>