Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-29507
HistoryJul 03, 2024 - 12:00 a.m.

CVE-2024-29507

2024-07-0300:00:00
ubuntu.com
ubuntu.com
4
artifex ghostscript
buffer overflow
cidfsubstpath
cidfsubstfont
unix

AI Score

6.6

Confidence

Low

Artifex Ghostscript before 10.03.0 sometimes has a stack-based buffer
overflow via the CIDFSubstPath and CIDFSubstFont parameters.

Bugs

Notes

Author Note
mdeslaur per Debian, introduced by: https://cgit.ghostscript.com/cgi-bin/cgit.cgi/ghostpdl.git/commit/?id=316c3a08269212f1005709da64efcb383f8f5ce0 looks like this also introduced it: https://cgit.ghostscript.com/cgi-bin/cgit.cgi/ghostpdl.git/commit/?id=9ebc7de2f18bb8b899f9298bdbc6b1a8fb66c6b5
OSVersionArchitecturePackageVersionFilename
ubuntu24.04noarchghostscript< 10.02.1~dfsg1-0ubuntu7.3UNKNOWN