REDHAT-BUG-2325047: Medium severity ghostscript vulnerability
Published Nov 10, 2024
·Updated
An issue was discovered in psi/zfile.c in Artifex Ghostscript before 10.04.0. Out-of-bounds data access in filenameforall can lead to arbitrary code execution.
Affected Software
1 affected component
Artifex ghostscript<10.04.0
Event History
Nov 10, 2024
Data Sourced
via Red Hat·10:01 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2325047?
The severity of REDHAT-BUG-2325047 is critical due to the potential for arbitrary code execution.
2
How do I fix REDHAT-BUG-2325047?
To fix REDHAT-BUG-2325047, update to Artifex Ghostscript version 10.04.0 or later.
3
What causes REDHAT-BUG-2325047?
REDHAT-BUG-2325047 is caused by an out-of-bounds data access in the filenameforall function within Artifex Ghostscript.
4
Who is affected by REDHAT-BUG-2325047?
Users running Artifex Ghostscript versions before 10.04.0 are affected by REDHAT-BUG-2325047.
5
What can happen if REDHAT-BUG-2325047 is exploited?
If REDHAT-BUG-2325047 is exploited, it could lead to arbitrary code execution on the affected system.