Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-38559

Опубликовано: 01 авг. 2023
Источник: debian
EPSS Низкий

Описание

A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript. This issue may allow a local attacker to cause a denial of service via outputting a crafted PDF file for a DEVN device with gs.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ghostscriptfixed10.02.0~dfsg-1package
ghostscriptfixed10.0.0~dfsg-11+deb12u2bookwormpackage
ghostscriptfixed9.53.3~dfsg-7+deb11u6bullseyepackage

Примечания

  • https://bugs.ghostscript.com/show_bug.cgi?id=706897

  • https://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=d81b82c70bc1fb9991bb95f1201abb5dea55f57f (ghostpdl-10.02.0rc1)

EPSS

Процентиль: 3%
0.00019
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 2 лет назад

A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript. This issue may allow a local attacker to cause a denial of service via outputting a crafted PDF file for a DEVN device with gs.

CVSS3: 5.5
redhat
около 2 лет назад

A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript. This issue may allow a local attacker to cause a denial of service via outputting a crafted PDF file for a DEVN device with gs.

CVSS3: 5.5
nvd
около 2 лет назад

A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript. This issue may allow a local attacker to cause a denial of service via outputting a crafted PDF file for a DEVN device with gs.

suse-cvrf
около 2 лет назад

Security update for ghostscript

suse-cvrf
около 2 лет назад

Security update for ghostscript

EPSS

Процентиль: 3%
0.00019
Низкий