vulnerability

Amazon Linux AMI: CVE-2023-38559: Security patch for ghostscript (ALAS-2023-1801)

Severity
5
CVSS
(AV:L/AC:M/Au:N/C:N/I:N/A:C)
Published
08/01/2023
Added
08/23/2023
Modified
01/28/2025

Description

A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript. This issue may allow a local attacker to cause a denial of service via outputting a crafted PDF file for a DEVN device with gs.

Solution

amazon-linux-upgrade-ghostscript
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.