VYPR

rpm package

suse/ghostscript&distro=SUSE Linux Enterprise Real Time 15 SP3

pkg:rpm/suse/ghostscript&distro=SUSE%20Linux%20Enterprise%20Real%20Time%2015%20SP3

Vulnerabilities (2)

  • CVE-2023-36664Jun 25, 2023
    affected < 9.52-150000.167.1fixed 9.52-150000.167.1

    Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the %pipe% prefix or the | pipe character prefix).

  • CVE-2023-28879Mar 31, 2023
    affected < 9.52-150000.164.1fixed 9.52-150000.164.1

    In Artifex Ghostscript through 10.01.0, there is a buffer overflow leading to potential corruption of data internal to the PostScript interpreter, in base/sbcp.c. This affects BCPEncode, BCPDecode, TBCPEncode, and TBCPDecode. If the write buffer is filled to one byte less than fu