[3.8] ghostscript: Incorrect "restoration of privilege" checking when running out of stack during exception handling (CVE-2018-16802)
An issue was discovered in Artifex Ghostscript before 9.25. Incorrect
“restoration of privilege”
checking when running out of stack during exception handling could be used by attackers able to supply
crafted PostScript to execute code using the “pipe” instruction. This is due to an incomplete fix for CVE-2018-16509.
(from redmine: issue id 9434, created on 2018-09-20, closed on 2018-11-08)
main/ghostscript: security upgrade to 9.25 (CVE-2018-16802) Fixes #9434