Plain upstream Ghostscript

Edit Package ghostscript

The "ghostscript" package might be incompatible
with the official openSUSE "ghostscript-library"
package.

See "Package clean-up and upgrade to latest
stable release" at

https://bugzilla.novell.com/show_bug.cgi?id=735824

You need the packages ghostscript and
ghostscript-x11 which replace the official
packages ghostscript-library and
ghostscript-x11 (provided you have already
the package ghostscript-x11 installed).

Do not remove installed ghostscript-fonts-*
packages.

To replace the official packages, you must
install ghostscript and ghostscript-x11
in one run, e.g.:

# rpm -Uhv ghostscript-*.rpm ghostscript-x11-*.rpm

To go back to the official packages, you must
first remove the ghostscript and ghostscript-x11
package and ignore RPM package dependencies, e.g.:

# rpm -e --nodeps ghostscript ghostscript-x11

Then you can re-install the official packages,
e.g.:

# rpm -Uhv ghostscript-library-*.rpm ghostscript-x11-*.rpm

Be careful that you specify during installation
the exact right ghostscript-x11-*.rpm package
(with exact matching version-release) - otherwise
you get RPM conflicts.

In general please read

https://build.opensuse.org/project/show?project=Printing

Refresh
Refresh
Source Files
Filename Size Changed
CVE-2019-10216.patch 0000001597 1.56 KB
apparmor_ghostscript 0000001788 1.75 KB
ghostscript-9.27.tar.gz 0042277543 40.3 MB
ghostscript-mini.changes 0000055244 53.9 KB
ghostscript-mini.spec 0000019805 19.3 KB
ghostscript.changes 0000060663 59.2 KB
ghostscript.spec 0000028311 27.6 KB
gs-CVE-2019-14811-885444fc.patch 0000001756 1.71 KB
gs-CVE-2019-14817-cd1b1cac.patch 0000005895 5.76 KB
ijs_exec_server_dont_use_sh.patch 0000000983 983 Bytes
openjpeg4gs-CVE-2018-6616-8ee33522.patch 0000002311 2.26 KB
remove-zlib-h-dependency.patch 0000000527 527 Bytes
Revision 42 (latest revision is 66)
Yuchen Lin's avatar Yuchen Lin (maxlin_factory) accepted request 731293 from Dr. Werner Fink's avatar Dr. Werner Fink (WernerFink) (revision 42)
- Add patch gs-CVE-2019-14811-885444fc.patch to fix bsc#1146882
  for CVE-2019-14811,CVE-2019-14812,CVE-2019-14813
- Add patch gs-CVE-2019-14817-cd1b1cac.patch to fix bsc#1146884
  for CVE-2019-14817

- Add patch openjpeg4gs-CVE-2018-6616-8ee33522.patch to fix bsc#1140359
  for CVE-2019-12973

- Update RPM groups.

  use this with its wrapper script

- CVE-2019-10216.patch fixes CVE-2019-10216
  forceput/superexec in .buildfont1 is still accessible
  https://bugzilla.suse.com/show_bug.cgi?id=1144621 bsc#1144621
  https://bugs.ghostscript.com/show_bug.cgi?id=701394
- Add patch gs-CVE-2019-14811-885444fc.patch to fix bsc#1146882
  for CVE-2019-14811,CVE-2019-14812,CVE-2019-14813
- Add patch gs-CVE-2019-14817-cd1b1cac.patch to fix bsc#1146884
  for CVE-2019-14817

- Add patch openjpeg4gs-CVE-2018-6616-8ee33522.patch to fix bsc#1140359
  for CVE-2019-12973

- Update RPM groups.

  use this with its wrapper script 

- CVE-2019-10216.patch fixes CVE-2019-10216
  forceput/superexec in .buildfont1 is still accessible
Comments 2


Andre Barros's avatar

There is a regression on ghostscript 9.27 fixed upstream, but there isn't a new point release yet. It affects klatexformula and some other apps that depends on ghostscript.

Please, apply the patch on: http://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=06c920713e11

Regards, André

openSUSE Build Service is sponsored by