Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-29511
HistoryJul 03, 2024 - 12:00 a.m.

CVE-2024-29511

2024-07-0300:00:00
ubuntu.com
ubuntu.com
5
artifex ghostscript
ocr
directory traversal

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Artifex Ghostscript before 10.03.1, when Tesseract is used for OCR, has a
directory traversal issue that allows arbitrary file reading (and writing
of error messages to arbitrary files) via OCRLanguage. For example,
exploitation can use debug_file /tmp/out and user_patterns_file
/etc/passwd.

Bugs

Notes

Author Note
mdeslaur while Debian doesn’t build Tesseract support, it looks like Ubuntu does in fact have Tesseract support in jammy+ second commit is required to prevent regression in pdf2ps
OSVersionArchitecturePackageVersionFilename
ubuntu22.04noarchghostscript< 9.55.0~dfsg1-0ubuntu5.9UNKNOWN
ubuntu24.04noarchghostscript< 10.02.1~dfsg1-0ubuntu7.3UNKNOWN

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N