Unrated severityNVD Advisory· Published Nov 10, 2024· Updated Nov 12, 2024
CVE-2024-46954
CVE-2024-46954
Description
An issue was discovered in decode_utf8 in base/gp_utf8.c in Artifex Ghostscript before 10.04.0. Overlong UTF-8 encoding leads to possible ../ directory traversal.
Affected products
11(expand)+ 1 more
- (no CPE)
- (no CPE)range: <10.04.0
- osv-coords9 versionspkg:rpm/almalinux/ghostscriptpkg:rpm/almalinux/ghostscript-docpkg:rpm/almalinux/ghostscript-tools-dvipdfpkg:rpm/almalinux/ghostscript-tools-fontspkg:rpm/almalinux/ghostscript-tools-printingpkg:rpm/almalinux/ghostscript-x11pkg:rpm/almalinux/libgspkg:rpm/almalinux/libgs-develpkg:rpm/opensuse/ghostscript&distro=openSUSE%20Tumbleweed
< 9.27-16.el8_10+ 8 more
- (no CPE)range: < 9.27-16.el8_10
- (no CPE)range: < 9.27-16.el8_10
- (no CPE)range: < 9.27-16.el8_10
- (no CPE)range: < 9.27-16.el8_10
- (no CPE)range: < 9.27-16.el8_10
- (no CPE)range: < 9.27-16.el8_10
- (no CPE)range: < 9.27-16.el8_10
- (no CPE)range: < 9.27-16.el8_10
- (no CPE)range: < 10.04.0-1.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3News mentions
0No linked articles in our index yet.