← Back to CVE List

CVE-2017-8291

Published: 2017-04-27T01:59Z
Last Modified: 2025-03-14T20:34Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and remote command execution via .rsdparams type confusion with a "/OutputFile (%pipe%" substring in a crafted .eps document that is an input to the gs program, as exploited in the wild in April 2017. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt