Artifex Ghostscript before 9.53.0 has an out-of-bounds write and use-after-free in devices/vector/gdevtxtw.c (for txtwrite) because a single character code in a PDF document can map to more than one Unicode code point (e.g., for a ligature).
CVSS Details
- CVSS 3.1 Base Score: 9.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Amazon Linux Ami 2 | — | Upgrade ghostscript-debuginfoUpgrade ghostscript-gtkUpgrade ghostscript-cupsUpgrade libgs-develUpgrade ghostscriptUpgrade libgsUpgrade ghostscript-doc | Feb 21, 2024 | Feb 4, 2024 |
| Debian | — | Upgrade ghostscript | Jul 30, 2024 | Feb 4, 2024 |
| Ghostscript | — | Upgrade to Ghostscript version 9.53 | Jun 26, 2024 | Feb 4, 2024 |
| Huawei Euleros 2_0_sp10 | — | Upgrade ghostscript-helpUpgrade ghostscript | May 13, 2024 | Feb 4, 2024 |
| Huawei Euleros 2_0_sp9 | — | Upgrade ghostscript-helpUpgrade ghostscript | Apr 9, 2024 | Feb 4, 2024 |
| Suse | — | Upgrade ghostscript-develUpgrade ghostscriptUpgrade ghostscript-x11 | Aug 9, 2024 | Feb 4, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub