Alerts This Week
Warning Icon 1 684
Alerts This Week
Warning Icon 1 684

Fedora 38: 2023-66d60c3df7 Critical: ghostscript Remote Code Execute

fedora
Calendar Grey October 15, 2023
Dist Fedora Esm H88
Important patch released for Ghostscript on Fedora 38, addressing a serious remote code execution vulnerability outlined in CVE-2023-43115.
fix for CVE-2023-43115 (#2241112)

Summary

This package provides useful conversion utilities based on Ghostscript software,

for converting PS, PDF and other document formats between each other.

Ghostscript is a suite of software providing an interpreter for Adobe Systems'

PostScript (PS) and Portable Document Format (PDF) page description languages.

Its primary purpose includes displaying (rasterization & rendering) and printing

of document pages, as well as conversions between different document formats.

Update Information:

fix for CVE-2023-43115 (#2241112)

Change Log

* Wed Oct 11 2023 Richard Lescak - 10.01.2-4 - fix for CVE-2023-43115 (#2241112)

References


[ 1 ] Bug #2241112 - CVE-2023-43115 ghostscript: GhostPDL can lead to remote code execution via crafted PostScript documents [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2241112

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-66d60c3df7' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: ghostscript
Product: Fedora 38
Version: 10.01.2
Release: 4.fc38
Summary: Interpreter for PostScript language & PDF

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here