[El-errata] ELSA-2018-3760 Important: Oracle Linux 6 ghostscript security update

Errata Announcements for Oracle Linux el-errata at oss.oracle.com
Mon Dec 3 18:00:44 PST 2018


Oracle Linux Security Advisory ELSA-2018-3760

http://linux.oracle.com/errata/ELSA-2018-3760.html

The following updated rpms for Oracle Linux 6 have been uploaded to the 
Unbreakable Linux Network:

i386:
ghostscript-8.70-24.el6_10.2.i686.rpm
ghostscript-devel-8.70-24.el6_10.2.i686.rpm
ghostscript-doc-8.70-24.el6_10.2.i686.rpm
ghostscript-gtk-8.70-24.el6_10.2.i686.rpm

x86_64:
ghostscript-8.70-24.el6_10.2.i686.rpm
ghostscript-8.70-24.el6_10.2.x86_64.rpm
ghostscript-devel-8.70-24.el6_10.2.i686.rpm
ghostscript-devel-8.70-24.el6_10.2.x86_64.rpm
ghostscript-doc-8.70-24.el6_10.2.x86_64.rpm
ghostscript-gtk-8.70-24.el6_10.2.x86_64.rpm


SRPMS:
http://oss.oracle.com/ol6/SRPMS-updates/ghostscript-8.70-24.el6_10.2.src.rpm



Description of changes:

[8.70-24.el6_10.2]
- It was found that the fix for CVE-2018-16509 was not complete, the missing
   pieces added into ghostscript-CVE-2018-16509.patch

[8.70-24.el6_10.1]
- Resolves: #1641124 - CVE-2018-16509 ghostscript: /invalidaccess bypass 
after failed restore

[8.70-24]
- Added security fix for CVE-2017-8291 (bug #1446063)





More information about the El-errata mailing list