Unrated severityNVD Advisory· Published Aug 1, 2023· Updated Nov 20, 2025
Ghostscript: integer overflow in pcl/pl/plfont.c:418 in pl_glyph_name
CVE-2023-38560
Description
An integer overflow flaw was found in pcl/pl/plfont.c:418 in pl_glyph_name in ghostscript. This issue may allow a local attacker to cause a denial of service via transforming a crafted PCL file to PDF format.
Affected products
12cpe:/o:redhat:enterprise_linux:6+ 3 more
- cpe:/o:redhat:enterprise_linux:6
- cpe:/o:redhat:enterprise_linux:7
- cpe:/o:redhat:enterprise_linux:8
- cpe:/o:redhat:enterprise_linux:9
- osv-coords8 versionspkg:apk/chainguard/ghostscriptpkg:apk/chainguard/ghostscript-dbgpkg:apk/chainguard/ghostscript-devpkg:apk/chainguard/ghostscript-docpkg:apk/wolfi/ghostscriptpkg:apk/wolfi/ghostscript-dbgpkg:apk/wolfi/ghostscript-devpkg:apk/wolfi/ghostscript-doc
< 10.02.0-r0+ 7 more
- (no CPE)range: < 10.02.0-r0
- (no CPE)range: < 10.02.0-r0
- (no CPE)range: < 10.02.0-r0
- (no CPE)range: < 10.02.0-r0
- (no CPE)range: < 10.02.0-r0
- (no CPE)range: < 10.02.0-r0
- (no CPE)range: < 10.02.0-r0
- (no CPE)range: < 10.02.0-r0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- access.redhat.com/security/cve/CVE-2023-38560mitrevdb-entryx_refsource_REDHAT
- bugzilla.redhat.com/show_bug.cgimitreissue-trackingx_refsource_REDHAT
- bugs.ghostscript.com/show_bug.cgimitre
- git.ghostscript.commitre
News mentions
0No linked articles in our index yet.