CVE-2024-29506
published 2024-07-03CVE-2024-29506: Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi_apply_filter() function via a long PDF filter name.
PriorityP348high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
0.91%
56.0th percentile
Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi_apply_filter() function via a long PDF filter name.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| artifex | ghostscript | < 10.03.0 | 10.03.0 |
| artifex | ghostscript | >= 0 < 10.0.0~dfsg-11+deb12u5 | 10.0.0~dfsg-11+deb12u5 |
| artifex | ghostscript | >= 0 < 10.03.0~dfsg-1 | 10.03.0~dfsg-1 |
| artifex | ghostscript | >= 0 < 10.03.0~dfsg-1 | 10.03.0~dfsg-1 |
| artifex | ghostscript | >= 0 < 9.50~dfsg-5ubuntu4.13 | 9.50~dfsg-5ubuntu4.13 |
| artifex | ghostscript | >= 0 < 9.55.0~dfsg1-0ubuntu5.9 | 9.55.0~dfsg1-0ubuntu5.9 |
| artifex | ghostscript | >= 0 < 10.02.1~dfsg1-0ubuntu7.3 | 10.02.1~dfsg1-0ubuntu7.3 |
| debian | ghostscript | < ghostscript 10.0.0~dfsg-11+deb12u5 (bookworm) | ghostscript 10.0.0~dfsg-11+deb12u5 (bookworm) |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH
vendor_debian8.8HIGH
vendor_redhat8.8HIGH
vendor_ubuntu8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
ghostscript vulnerabilities
osv·2024-07-15·CVSS 8.8
CVE-2024-29506 [HIGH] ghostscript vulnerabilities
ghostscript vulnerabilities
It was discovered that Ghostscript incorrectly handled certain long PDF
filter names. An attacker could possibly use this issue to cause
Ghostscript to crash, resulting in a denial of service. This issue only
affected Ubuntu 22.04 LTS and Ubuntu 24.04 LTS. (CVE-2024-29506)
It was discovered that Ghostscript incorrectly handled certain API
parameters. An attacker could possibly use this issue to cause Ghostscript
to crash, resulting in a denial of service. This issue only affected Ubuntu
24.04 LTS. (CVE-2024-29507)
It was discovered that Ghostscript incorrectly handled certain BaseFont
names. An attacker could use this issue to cause Ghostscript to crash,
resulting in a denial of service, or possibly execute arbitrary code.
(CVE-2024-29508)
It was discovered
OSV
CVE-2024-29506: Artifex Ghostscript before 10
osv·2024-07-03·CVSS 8.8
CVE-2024-29506 [HIGH] CVE-2024-29506: Artifex Ghostscript before 10
Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi_apply_filter() function via a long PDF filter name.
GHSA
GHSA-g5x6-xpv4-w4mm: Artifex Ghostscript before 10
ghsa_unreviewed·2024-07-03
CVE-2024-29506 [MEDIUM] CWE-120 GHSA-g5x6-xpv4-w4mm: Artifex Ghostscript before 10
Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi_apply_filter() function via a long PDF filter name.
Ubuntu
Ghostscript vulnerabilities
vendor_ubuntu·2024-07-15·CVSS 8.8
CVE-2024-29508 [HIGH] Ghostscript vulnerabilities
Title: Ghostscript vulnerabilities
Summary: Several security issues were fixed in Ghostscript.
It was discovered that Ghostscript incorrectly handled certain long PDF
filter names. An attacker could possibly use this issue to cause
Ghostscript to crash, resulting in a denial of service. This issue only
affected Ubuntu 22.04 LTS and Ubuntu 24.04 LTS. (CVE-2024-29506)
It was discovered that Ghostscript incorrectly handled certain API
parameters. An attacker could possibly use this issue to cause Ghostscript
to crash, resulting in a denial of service. This issue only affected Ubuntu
24.04 LTS. (CVE-2024-29507)
It was discovered that Ghostscript incorrectly handled certain BaseFont
names. An attacker could use this issue to cause Ghostscript to crash,
resulting in a denial of service, or p
Red Hat
ghostscript: stack-based buffer overflow in the pdfi_apply_filter()
vendor_redhat·2024-07-03·CVSS 8.8
CVE-2024-29506 [HIGH] CWE-121 ghostscript: stack-based buffer overflow in the pdfi_apply_filter()
ghostscript: stack-based buffer overflow in the pdfi_apply_filter()
Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi_apply_filter() function via a long PDF filter name.
A flaw was found in Ghostscript. The `PDFDEBUG` flag controls the value of `ctx->args.debug`. In `pdfi_apply_filter`. This issue enables the execution of a `memcpy` into a stack buffer, without bounds checks. A filter name larger than 100 will overflow the `str` buffer, which may lead to an application crash or other unexpected behavior.
Statement: The buffer overflow vulnerability in Ghostscript's pdfi_apply_filter function, triggered by the PDFDEBUG flag, is classified as a moderate severity issue rather than high priority. This classification stems from the fact that the overflow affect
Debian
CVE-2024-29506: ghostscript - Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi...
vendor_debian·2024·CVSS 8.8
CVE-2024-29506 [HIGH] CVE-2024-29506: ghostscript - Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi...
Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi_apply_filter() function via a long PDF filter name.
Scope: local
bookworm: resolved (fixed in 10.0.0~dfsg-11+deb12u5)
bullseye: resolved
forky: resolved (fixed in 10.03.0~dfsg-1)
sid: resolved (fixed in 10.03.0~dfsg-1)
trixie: resolved (fixed in 10.03.0~dfsg-1)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugs.ghostscript.com/show_bug.cgi?id=707510https://git.ghostscript.com/?p=ghostpdl.git%3Bh=77dc7f699beba606937b7ea23b50cf5974fa64b1https://www.openwall.com/lists/oss-security/2024/07/03/7https://bugs.ghostscript.com/show_bug.cgi?id=707510https://git.ghostscript.com/?p=ghostpdl.git%3Bh=77dc7f699beba606937b7ea23b50cf5974fa64b1https://www.openwall.com/lists/oss-security/2024/07/03/7
2024-07-03
Published