Out-of-bounds read In ghostscript
Description
A heap-based buffer overwrite vulnerability was found in GhostScript's lp8000_print_page() function in the gdevlp8k.c file. This flaw allows an attacker to trick a user into opening a crafted PDF file, triggering the heap buffer overflow that could lead to memory corruption or a denial of service.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
debian 11 | 9.51~dfsg-1 | ||
debian 12 | 9.51~dfsg-1 | ||
debian 13 | 9.51~dfsg-1 | ||
debian 14 | 9.51~dfsg-1 | ||
rpm rhel6 | - | - | |
rpm rhel7 | - | - | |
rpm rhel8 | 0:9.27-16.el8_10 |
Aliases
1. 2. 3. 4. 5.