ghostscript-9.07-20.el7.5

エラータID: AXSA:2017-1650:03

Release date: 
Friday, May 12, 2017 - 17:14
Subject: 
ghostscript-9.07-20.el7.5
Affected Channels: 
Asianux Server 7 for x86_64
Severity: 
High
Description: 

Ghostscript is a set of software that provides a PostScript
interpreter, a set of C procedures (the Ghostscript library, which
implements the graphics capabilities in the PostScript language) and
an interpreter for Portable Document Format (PDF) files. Ghostscript
translates PostScript code into many common, bitmapped formats, like
those understood by your printer or screen. Ghostscript is normally
used to display PostScript files and to print PostScript files to
non-PostScript printers.

If you need to display PostScript files or print them to
non-PostScript printers, you should install ghostscript. If you
install ghostscript, you also need to install the ghostscript-fonts
package.

Security issues fixed with this release:

CVE-2017-8291
Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and
remote command execution via .rsdparams type confusion with a
"/OutputFile (%pipe%" substring in a crafted .eps document that is an
input to the gs program, as exploited in the wild in April 2017.

Solution: 

Update package.

Additional Info: 

N/A

Download: 

SRPMS
  1. ghostscript-9.07-20.el7.5.src.rpm
    MD5: 74245ddef17317dda9da2f9ec60fc068
    SHA-256: 178ba95db0c328e446829c03de4b15ecbd421ffc76a03fe1a35786fac229d609
    Size: 26.57 MB

Asianux Server 7 for x86_64
  1. ghostscript-9.07-20.el7.5.x86_64.rpm
    MD5: 2808b44b9ee2bd199eacb84584ca4f0e
    SHA-256: a58de4afbb4cc5e1aa6f28c3c3a3eb6451ce3c280ac42f2b3ede88f10206a744
    Size: 4.31 MB
  2. ghostscript-cups-9.07-20.el7.5.x86_64.rpm
    MD5: b9329b299fed05395da9119f363f3e20
    SHA-256: 4ff81b12f980de902f0d815c511248c3c99a42a3730b5f75e31643053ddfda59
    Size: 54.91 kB
  3. ghostscript-9.07-20.el7.5.i686.rpm
    MD5: 7d962c9725c03a6d437294e012410ed3
    SHA-256: a247ce99a355337528c6c8a4a61aef949bb3b30c4072dc78cce526d183e88bf9
    Size: 4.30 MB