Bug 1107422 (CVE-2018-16539) - VUL-0: CVE-2018-16539: ghostscript,ghostscript-library: incorrect access checking in temp file handling to disclose contents of files (699658)
Summary: VUL-0: CVE-2018-16539: ghostscript,ghostscript-library: incorrect access chec...
Status: RESOLVED FIXED
Alias: CVE-2018-16539
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other Other
: P3 - Medium : Normal
Target Milestone: ---
Assignee: Security Team bot
QA Contact: Security Team bot
URL: https://smash.suse.de/issue/213813/
Whiteboard: CVSSv3:SUSE:CVE-2018-16539:5.3:(AV:N/...
Keywords:
Depends on:
Blocks:
 
Reported: 2018-09-06 07:52 UTC by Alexander Bergmann
Modified: 2020-06-18 07:16 UTC (History)
4 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Alexander Bergmann 2018-09-06 07:52:53 UTC
rh#1625839

In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect access checking in temp file handling to disclose contents of files on the system otherwise not readable.


External Reference:

https://www.kb.cert.org/vuls/id/332928
https://www.artifex.com/news/ghostscript-security-resolved/


Upstream Bug:

https://bugs.ghostscript.com/show_bug.cgi?id=699658


Upstream Patch:

http://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=a054156d

References:
https://bugzilla.redhat.com/show_bug.cgi?id=1625839
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2018-16539
Comment 3 Swamp Workflow Management 2018-10-02 19:09:55 UTC
SUSE-SU-2018:2975-1: An update that fixes 16 vulnerabilities is now available.

Category: security (important)
Bug References: 1106171,1106172,1106173,1106195,1107410,1107411,1107412,1107413,1107420,1107421,1107422,1107423,1107426,1107581,1108027,1109105
CVE References: CVE-2018-15908,CVE-2018-15909,CVE-2018-15910,CVE-2018-15911,CVE-2018-16509,CVE-2018-16510,CVE-2018-16511,CVE-2018-16513,CVE-2018-16539,CVE-2018-16540,CVE-2018-16541,CVE-2018-16542,CVE-2018-16543,CVE-2018-16585,CVE-2018-16802,CVE-2018-17183
Sources used:
SUSE OpenStack Cloud 7 (src):    ghostscript-9.25-23.13.1
SUSE Linux Enterprise Software Development Kit 12-SP3 (src):    ghostscript-9.25-23.13.1
SUSE Linux Enterprise Server for SAP 12-SP2 (src):    ghostscript-9.25-23.13.1
SUSE Linux Enterprise Server 12-SP3 (src):    ghostscript-9.25-23.13.1
SUSE Linux Enterprise Server 12-SP2-LTSS (src):    ghostscript-9.25-23.13.1
SUSE Linux Enterprise Server 12-SP1-LTSS (src):    ghostscript-9.25-23.13.1
SUSE Linux Enterprise Server 12-LTSS (src):    ghostscript-9.25-23.13.1
SUSE Linux Enterprise Desktop 12-SP3 (src):    ghostscript-9.25-23.13.1
SUSE Enterprise Storage 4 (src):    ghostscript-9.25-23.13.1
Comment 4 Swamp Workflow Management 2018-10-02 19:12:43 UTC
SUSE-SU-2018:2976-1: An update that fixes 16 vulnerabilities is now available.

Category: security (important)
Bug References: 1106171,1106172,1106173,1106195,1107410,1107411,1107412,1107413,1107420,1107421,1107422,1107423,1107426,1107581,1108027,1109105
CVE References: CVE-2018-15908,CVE-2018-15909,CVE-2018-15910,CVE-2018-15911,CVE-2018-16509,CVE-2018-16510,CVE-2018-16511,CVE-2018-16513,CVE-2018-16539,CVE-2018-16540,CVE-2018-16541,CVE-2018-16542,CVE-2018-16543,CVE-2018-16585,CVE-2018-16802,CVE-2018-17183
Sources used:
SUSE Linux Enterprise Module for Desktop Applications 15 (src):    libspectre-0.2.8-3.2.1
SUSE Linux Enterprise Module for Basesystem 15 (src):    ghostscript-9.25-3.6.1
Comment 5 Swamp Workflow Management 2018-10-05 19:12:06 UTC
openSUSE-SU-2018:3036-1: An update that fixes 16 vulnerabilities is now available.

Category: security (important)
Bug References: 1106171,1106172,1106173,1106195,1107410,1107411,1107412,1107413,1107420,1107421,1107422,1107423,1107426,1107581,1108027,1109105
CVE References: CVE-2018-15908,CVE-2018-15909,CVE-2018-15910,CVE-2018-15911,CVE-2018-16509,CVE-2018-16510,CVE-2018-16511,CVE-2018-16513,CVE-2018-16539,CVE-2018-16540,CVE-2018-16541,CVE-2018-16542,CVE-2018-16543,CVE-2018-16585,CVE-2018-16802,CVE-2018-17183
Sources used:
openSUSE Leap 42.3 (src):    ghostscript-9.25-14.9.1, ghostscript-mini-9.25-14.9.1
Comment 6 Swamp Workflow Management 2018-10-05 19:14:50 UTC
openSUSE-SU-2018:3038-1: An update that fixes 16 vulnerabilities is now available.

Category: security (important)
Bug References: 1106171,1106172,1106173,1106195,1107410,1107411,1107412,1107413,1107420,1107421,1107422,1107423,1107426,1107581,1108027,1109105
CVE References: CVE-2018-15908,CVE-2018-15909,CVE-2018-15910,CVE-2018-15911,CVE-2018-16509,CVE-2018-16510,CVE-2018-16511,CVE-2018-16513,CVE-2018-16539,CVE-2018-16540,CVE-2018-16541,CVE-2018-16542,CVE-2018-16543,CVE-2018-16585,CVE-2018-16802,CVE-2018-17183
Sources used:
openSUSE Leap 15.0 (src):    ghostscript-9.25-lp150.2.6.1, ghostscript-mini-9.25-lp150.2.6.1, libspectre-0.2.8-lp150.2.3.1
Comment 8 Swamp Workflow Management 2018-10-18 18:01:57 UTC
SUSE-SU-2018:2975-2: An update that fixes 16 vulnerabilities is now available.

Category: security (important)
Bug References: 1106171,1106172,1106173,1106195,1107410,1107411,1107412,1107413,1107420,1107421,1107422,1107423,1107426,1107581,1108027,1109105
CVE References: CVE-2018-15908,CVE-2018-15909,CVE-2018-15910,CVE-2018-15911,CVE-2018-16509,CVE-2018-16510,CVE-2018-16511,CVE-2018-16513,CVE-2018-16539,CVE-2018-16540,CVE-2018-16541,CVE-2018-16542,CVE-2018-16543,CVE-2018-16585,CVE-2018-16802,CVE-2018-17183
Sources used:
SUSE Linux Enterprise Server 12-SP2-BCL (src):    ghostscript-9.25-23.13.1
Comment 9 Swamp Workflow Management 2019-04-27 22:42:26 UTC
SUSE-SU-2018:2975-3: An update that fixes 16 vulnerabilities is now available.

Category: security (important)
Bug References: 1106171,1106172,1106173,1106195,1107410,1107411,1107412,1107413,1107420,1107421,1107422,1107423,1107426,1107581,1108027,1109105
CVE References: CVE-2018-15908,CVE-2018-15909,CVE-2018-15910,CVE-2018-15911,CVE-2018-16509,CVE-2018-16510,CVE-2018-16511,CVE-2018-16513,CVE-2018-16539,CVE-2018-16540,CVE-2018-16541,CVE-2018-16542,CVE-2018-16543,CVE-2018-16585,CVE-2018-16802,CVE-2018-17183
Sources used:
SUSE Linux Enterprise Server for SAP 12-SP1 (src):    ghostscript-9.25-23.13.1

NOTE: This line indicates an update has been released for the listed product(s). At times this might be only a partial fix. If you have questions please reach out to maintenance coordination.
Comment 11 Marcus Meissner 2020-01-28 07:17:13 UTC
released