CVE-2009-0196
Publication date 16 April 2009
Last updated 24 July 2024
Ubuntu priority
Heap-based buffer overflow in the big2_decode_symbol_dict function (jbig2_symbol_dict.c) in the JBIG2 decoding library (jbig2dec) in Ghostscript 8.64, and probably earlier versions, allows remote attackers to execute arbitrary code via a PDF file with a JBIG2 symbol dictionary segment with a large run length value.
Status
Package | Ubuntu Release | Status |
---|---|---|
ghostscript | 9.10 karmic |
Fixed 8.64.dfsg.1-0ubuntu8
|
9.04 jaunty |
Fixed 8.64.dfsg.1-0ubuntu8
|
|
8.10 intrepid |
Fixed 8.63.dfsg.1-0ubuntu6.4
|
|
8.04 LTS hardy |
Fixed 8.61.dfsg.1-1ubuntu3.2
|
|
7.10 gutsy | Ignored end of life, was needed | |
6.06 LTS dapper | Not in release | |
gs-afpl | 9.10 karmic | Not in release |
9.04 jaunty | Not in release | |
8.10 intrepid | Not in release | |
8.04 LTS hardy | Not in release | |
7.10 gutsy | Not in release | |
6.06 LTS dapper | Ignored end of life | |
gs-esp | 9.10 karmic | Not in release |
9.04 jaunty | Not in release | |
8.10 intrepid | Not in release | |
8.04 LTS hardy | Not in release | |
7.10 gutsy | Not in release | |
6.06 LTS dapper |
Fixed 8.15.2.dfsg.0ubuntu1-0ubuntu1.2
|
|
gs-gpl | 9.10 karmic | Not in release |
9.04 jaunty | Not in release | |
8.10 intrepid | Not in release | |
8.04 LTS hardy | Not in release | |
7.10 gutsy | Not in release | |
6.06 LTS dapper |
Fixed 8.15-4ubuntu3.3
|