File _patchinfo of Package patchinfo.16955
<patchinfo incident="16955">
<issue tracker="cve" id="2021-3781"/>
<issue tracker="bnc" id="1190381">VUL-0: CVE-2021-3781: ghostscript: RCE injection</issue>
<issue tracker="bnc" id="1184123">AUDIT-TRACKER: packaging: [batch sle 2] sle packages with non-pie binaries</issue>
<packager>jsmeix</packager>
<rating>critical</rating>
<category>security</category>
<summary>Security update for ghostscript</summary>
<description>This update for ghostscript fixes the following issues:
Security issue fixed:
- CVE-2021-3781: Fixed a trivial -dSAFER bypass command injection (bsc#1190381)
Also a hardening fix was added:
- Link as position independent executable (bsc#1184123)
This update was imported from the SUSE:SLE-15:Update update project.</description>
</patchinfo>