First published: Thu Jul 20 2023(Updated: )
An integer overflow flaw was found in pcl/pl/plfont.c:418 in pl_glyph_name in ghostscript. This issue may allow a local attacker to cause a denial of service via transforming a crafted PCL file to PDF format.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Artifex Software Ghostscript |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-38560.
The vulnerability is located in pcl/pl/plfont.c:418 in pl_glyph_name in ghostscript.
This vulnerability may allow a local attacker to cause a denial of service via transforming a crafted PCL file to PDF format.
Artifex Ghostscript is affected by this vulnerability.
The severity of this vulnerability is medium, with a CVSS score of 5.5.