Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Fedora 37: FEDORA-2023-D0EF677E6F critical DoS Issue in Ghostscript

fedora
Calendar Grey August 16, 2023
Dist Fedora Esm H88
Stay informed about the critical CVE-2023-38559 vulnerability in Ghostscript. Update your package quickly to prevent service disruptions and ensure security
fix for CVE-2023-38559 (#2225380)

Summary

This package provides useful conversion utilities based on Ghostscript software,

for converting PS, PDF and other document formats between each other.

Ghostscript is a suite of software providing an interpreter for Adobe Systems'

PostScript (PS) and Portable Document Format (PDF) page description languages.

Its primary purpose includes displaying (rasterization & rendering) and printing

of document pages, as well as conversions between different document formats.

Update Information:

fix for CVE-2023-38559 (#2225380)

Change Log

* Mon Aug 7 2023 Richard Lescak - 9.56.1-9 - fix for CVE-2023-38559 (#2225380)

References


[ 1 ] Bug #2225380 - TRIAGE-CVE-2023-38559 ghostscript: Out-of-bound read in base/gdevdevn.c:1973 in devn_pcx_write_rle could result in DoS [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2225380

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-d0ef677e6f' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: ghostscript
Product: Fedora 37
Version: 9.56.1
Release: 9.fc37
Summary: Interpreter for PostScript language & PDF

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here