CVE-2023-36664
published 2023-06-25CVE-2023-36664: Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the %pipe% prefix or the | pipe character prefix).
PriorityP341high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
3.24%
86.9th percentile
Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the %pipe% prefix or the | pipe character prefix).
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| artifex | ghostscript | <= 10.01.2 | — |
| artifex | ghostscript | >= 0 < 9.53.3~dfsg-7+deb11u5 | 9.53.3~dfsg-7+deb11u5 |
| artifex | ghostscript | >= 0 < 10.0.0~dfsg-11+deb12u1 | 10.0.0~dfsg-11+deb12u1 |
| artifex | ghostscript | >= 0 < 10.01.2~dfsg-1 | 10.01.2~dfsg-1 |
| artifex | ghostscript | >= 0 < 10.01.2~dfsg-1 | 10.01.2~dfsg-1 |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | ghostscript | < ghostscript 10.0.0~dfsg-11+deb12u1 (bookworm) | ghostscript 10.0.0~dfsg-11+deb12u1 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv7.8HIGH
vendor_debian7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
CISA ICS
Siemens SCALANCE XCM-/XRM-300
cisa_ics·2024-02-15
Siemens SCALANCE XCM-/XRM-300
ICS Advisory
##
Siemens SCALANCE XCM-/XRM-300
Release DateFebruary 15, 2024
Alert CodeICSA-24-046-11
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.8
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: SCALANCE XCM-/XRM-300
- Vulnerabilities: Out-of-bounds Write, Incorrect Type Conversion or Cast, Improper Verification of Cryptographic Signature, Improper Access Control, Improper Authentication, Missing Encryption
Ubuntu
Ghostscript vulnerability
vendor_ubuntu·2023-07-10
CVE-2023-36664 Ghostscript vulnerability
Title: Ghostscript vulnerability
Summary: Ghostscript could be made to run programs if it opened a specially crafted
file.
It was discovered that Ghostscript incorrectly handled pipe devices. If a
user or automated system were tricked into opening a specially crafted PDF
file, a remote attacker could use this issue to execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
ghostscript: vulnerable to OS command injection due to mishandles permission validation for pipe devices
vendor_redhat·2023-06-27·CVSS 7.8
CVE-2023-36664 [HIGH] CWE-78 ghostscript: vulnerable to OS command injection due to mishandles permission validation for pipe devices
ghostscript: vulnerable to OS command injection due to mishandles permission validation for pipe devices
Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the %pipe% prefix or the | pipe character prefix).
A vulnerability was found in Ghostscript. This flaw occurs due to a mishandled permission validation for pipe devices (with the %pipe% prefix or the | pipe character prefix).
Statement: Versions of Ghostscript shipped with Red Hat Enterprise Linux 7 and 8 are not affected as it will forbid file execution with ".invalidfileaccess" if -dSAFER is used.
Package: ghostscript (Red Hat Enterprise Linux 6) - Out of support scope
Package: ghostscript (Red Hat Enterprise Linux 7) - Not affected
Package: ghostscript (Red Hat Enterprise Linux 8) - Not
Debian
CVE-2023-36664: ghostscript - Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe de...
vendor_debian·2023·CVSS 7.8
CVE-2023-36664 [HIGH] CVE-2023-36664: ghostscript - Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe de...
Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the %pipe% prefix or the | pipe character prefix).
Scope: local
bookworm: resolved (fixed in 10.0.0~dfsg-11+deb12u1)
bullseye: resolved (fixed in 9.53.3~dfsg-7+deb11u5)
forky: resolved (fixed in 10.01.2~dfsg-1)
sid: resolved (fixed in 10.01.2~dfsg-1)
trixie: resolved (fixed in 10.01.2~dfsg-1)
GHSA
GHSA-9gf6-5j7x-x3m9: Artifex Ghostscript through 10
ghsa_unreviewed·2023-06-26
CVE-2023-36664 [HIGH] CWE-552 GHSA-9gf6-5j7x-x3m9: Artifex Ghostscript through 10
Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the %pipe% prefix or the | pipe character prefix).
OSV
CVE-2023-36664: Artifex Ghostscript through 10
osv·2023-06-25·CVSS 7.8
CVE-2023-36664 [HIGH] CVE-2023-36664: Artifex Ghostscript through 10
Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the %pipe% prefix or the | pipe character prefix).
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugs.ghostscript.com/show_bug.cgi?id=706761https://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=0974e4f2ac0005d3731e0b5c13ebc7e965540f4dhttps://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=505eab7782b429017eb434b2b95120855f2b0e3chttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2ICXN5VPF3WJCYKMPSYER5KHTPJXSTJZ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5EWMEK2UPCUU3ZLL7VASE5CEHDQY4VKV/https://security.gentoo.org/glsa/202309-03https://www.debian.org/security/2023/dsa-5446https://bugs.ghostscript.com/show_bug.cgi?id=706761https://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=0974e4f2ac0005d3731e0b5c13ebc7e965540f4dhttps://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=505eab7782b429017eb434b2b95120855f2b0e3chttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2ICXN5VPF3WJCYKMPSYER5KHTPJXSTJZ/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5EWMEK2UPCUU3ZLL7VASE5CEHDQY4VKV/https://security.gentoo.org/glsa/202309-03https://www.debian.org/security/2023/dsa-5446
2023-06-25
Published