Family: Red Hat Local Security Checks --> Category: infos
RHSA-2005-081: ghostscript Vulnerability Scan
Vulnerability Scan Summary
Check for the version of the ghostscript packages
Detailed Explanation for this Vulnerability Test
Updated ghostscript packages that fix a PDF output issue and a temporary
file security bug are now available.
This update has been rated as having low security impact by the Red Hat
Security Response Team.
Ghostscript is a program for displaying PostScript files or printing them
to non-PostScript printers.
A bug was found in the way several of Ghostscript's utility scripts created
temporary files. A local user could cause these utilities to overwrite
files that the victim running the utility has write access to. The Common
Vulnerabilities and Exposures project assigned the name CVE-2004-0967 to
Additionally, this update addresses the following issue:
A problem has been identified in the PDF output driver, which can cause
output to be delayed indefinitely on some systems. The fix has been
backported from GhostScript 7.07.
All users of ghostscript should upgrade to these updated packages, which
contain backported patches to resolve these issues.
Solution : http://rhn.redhat.com/errata/RHSA-2005-081.html
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.