Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.1.10.2023.0260
Categoría:Mageia Linux Local Security Checks
Título:Mageia: Security Advisory (MGASA-2023-0260)
Resumen:The remote host is missing an update for the 'ghostscript' package(s) announced via the MGASA-2023-0260 advisory.
Descripción:Summary:
The remote host is missing an update for the 'ghostscript' package(s) announced via the MGASA-2023-0260 advisory.

Vulnerability Insight:
Ghostscript through 10.01.2 mishandles permission validation for pipe
devices (with the %pipe% prefix or the pipe character prefix).
(CVE-2023-36664)

A buffer overflow flaw was found in base/gdevdevn.c:1973 in
devn_pcx_write_rle() in ghostscript. This issue may allow a local attacker
to cause a denial of service via outputting a crafted PDF file for a DEVN
device with gs. (CVE-2023-38559)

Affected Software/OS:
'ghostscript' package(s) on Mageia 8, Mageia 9.

Solution:
Please install the updated package(s).

CVSS Score:
7.2

CVSS Vector:
AV:L/AC:L/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2023-36664
Debian Security Information: DSA-5446 (Google Search)
https://www.debian.org/security/2023/dsa-5446
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/2ICXN5VPF3WJCYKMPSYER5KHTPJXSTJZ/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5EWMEK2UPCUU3ZLL7VASE5CEHDQY4VKV/
https://security.gentoo.org/glsa/202309-03
https://bugs.ghostscript.com/show_bug.cgi?id=706761
https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=0974e4f2ac0005d3731e0b5c13ebc7e965540f4d
https://git.ghostscript.com/?p=ghostpdl.git;a=commit;h=505eab7782b429017eb434b2b95120855f2b0e3c
Common Vulnerability Exposure (CVE) ID: CVE-2023-38559
RHBZ#2224367
https://bugzilla.redhat.com/show_bug.cgi?id=2224367
RHSA-2023:6544
https://access.redhat.com/errata/RHSA-2023:6544
RHSA-2023:7053
https://access.redhat.com/errata/RHSA-2023:7053
https://access.redhat.com/security/cve/CVE-2023-38559
https://bugs.ghostscript.com/show_bug.cgi?id=706897
https://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=d81b82c70bc1
https://lists.debian.org/debian-lts-announce/2023/08/msg00006.html
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GBV6BTUREXM6DB3OGHGLMWGAZ3I45TXE/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QH7ERAYSSXEYDWWY7LOV7CA5MIDZN3Z6/
CopyrightCopyright (C) 2023 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.