buildroot/package/ghostscript
Fabrice Fontaine 13ddfcdce7 package/ghostscript: fix CVE-2020-15900
A memory corruption issue was found in Artifex Ghostscript 9.50 and
9.52. Use of a non-standard PostScript operator can allow overriding of
file access controls. The 'rsearch' calculation for the 'post' size
resulted in a size that was too large, and could underflow to max
uint32_t. This was fixed in commit
5d499272b95a6b890a1397e11d20937de000d31b.

Signed-off-by: Fabrice Fontaine <fontaine.fabrice@gmail.com>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@bootlin.com>
2020-08-13 22:43:59 +02:00
..
0001-Fix-cross-compilation-issue.patch
0002-Bug-702582-CVE-2020-15900-Memory-Corruption-in-Ghostscript-9-52.patch package/ghostscript: fix CVE-2020-15900 2020-08-13 22:43:59 +02:00
Config.in
ghostscript.hash package/ghostscript: security bump version to 9.50 2019-10-20 15:38:12 +02:00
ghostscript.mk package/ghostscript: fix CVE-2020-15900 2020-08-13 22:43:59 +02:00