GhostScript 沙箱绕过(命令执行)漏洞
说明
GhostScript 沙箱绕过(命令执行)漏洞
https://thehackernews.com/2018/08/ghostscript-postscript-vulnerability.html
测试环境
https://github.com/vulhub/vulhub/tree/master/ghostscript/9.23-rce
漏洞详情
http://seclists.org/oss-sec/2018/q3/142
影响范围:
– Ghostscript
– ImageMagick
– GIMP
Leave a Reply