Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2025-7586

Опубликовано: 22 мая 2025
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2025-7586: ghostscript security update (MODERATE)

[9.54.0-19]

  • RHEL-88966 CVE-2025-27832 ghostscript: NPDL device: Compression buffer overflow

[9.54.0-18]

  • RHEL-18397 CVE-2023-46751 ghostscript: dangling pointer in gdev_prn_open_printer_seekable()
  • RHEL-67048 CVE-2024-46951 ghostscript: Arbitrary Code Execution in Artifex Ghostscript Pattern Color Space
  • RHEL-67053 CVE-2024-46954 ghostscript: Directory Traversal in Ghostscript via Overlong UTF-8 Encoding
  • RHEL-67053 CVE-2024-46953 ghostscript: Path Traversal and Code Execution via Integer Overflow in Ghostscript
  • RHEL-67053 CVE-2024-46956 ghostscript: Out-of-Bounds Data Access in Ghostscript Leads to Arbitrary Code Execution

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

libgs-devel

9.54.0-19.el9_6

ghostscript

9.54.0-19.el9_6

ghostscript-doc

9.54.0-19.el9_6

ghostscript-tools-dvipdf

9.54.0-19.el9_6

ghostscript-tools-fonts

9.54.0-19.el9_6

ghostscript-tools-printing

9.54.0-19.el9_6

ghostscript-x11

9.54.0-19.el9_6

libgs

9.54.0-19.el9_6

Oracle Linux x86_64

ghostscript

9.54.0-19.el9_6

ghostscript-doc

9.54.0-19.el9_6

ghostscript-tools-dvipdf

9.54.0-19.el9_6

ghostscript-tools-fonts

9.54.0-19.el9_6

ghostscript-tools-printing

9.54.0-19.el9_6

ghostscript-x11

9.54.0-19.el9_6

libgs

9.54.0-19.el9_6

libgs-devel

9.54.0-19.el9_6

Связанные CVE

Связанные уязвимости

CVSS3: 9.8
ubuntu
3 месяца назад

An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for contrib/japanese/gdevnpdl.c.

CVSS3: 5.5
redhat
3 месяца назад

An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for contrib/japanese/gdevnpdl.c.

CVSS3: 9.8
nvd
3 месяца назад

An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for contrib/japanese/gdevnpdl.c.

CVSS3: 9.8
debian
3 месяца назад

An issue was discovered in Artifex Ghostscript before 10.05.0. The NPD ...

CVSS3: 9.8
github
3 месяца назад

An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for contrib/japanese/gdevnpdl.c.