Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Artifex Ghostscript before 10.03.1, when Tesseract is used for OCR, has a directory traversal issue that allows arbitrary file reading (and writing of error messages to arbitrary files) via OCRLanguage. For example, exploitation can use debug_file /tmp/out and user_patterns_file /etc/passwd.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Artifex Ghostscript 安全漏洞
Vulnerability Description
Artifex Ghostscript是美国Artifex公司的一套建基于 Adobe、PostScript 及可移植文档格式的页面描述语言等而编译成的自由软件。 Artifex Ghostscript 10.03.1 版本之前存在安全漏洞,该漏洞源于当Tesseract用于OCR时,存在目录遍历问题,允许通过OCRLanguage读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A