A null pointer dereference vulnerability in compose_group_nonknockout_nonblend_isolated_allmask_common() in base/gxblend.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ghostscript | Artifex | * | 9.52 (excluding) |
Red Hat Enterprise Linux 8 | RedHat | ghostscript-0:9.27-1.el8 | * |
Ghostscript | Ubuntu | bionic | * |
Ghostscript | Ubuntu | focal | * |
Ghostscript | Ubuntu | trusty | * |
Ghostscript | Ubuntu | upstream | * |