CVE-2024-29511

Severity
7.5HIGH
EPSS
0.8%
top 26.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 3
Latest updateJul 15

Description

Artifex Ghostscript before 10.03.1, when Tesseract is used for OCR, has a directory traversal issue that allows arbitrary file reading (and writing of error messages to arbitrary files) via OCRLanguage. For example, exploitation can use debug_file /tmp/out and user_patterns_file /etc/passwd.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

NVDartifex/ghostscript< 10.03.1
Debianghostscript< 10.03.0~dfsg-1+1

🔴Vulnerability Details

3
GHSA
GHSA-g9m4-vfq7-w439: Artifex Ghostscript before 102024-07-03
OSV
CVE-2024-29511: Artifex Ghostscript before 102024-07-03
CVEList
CVE-2024-29511: Artifex Ghostscript before 102024-07-03

📋Vendor Advisories

3
Ubuntu
Ghostscript vulnerabilities2024-07-15
Red Hat
ghostscript: ghostscript: arbitrary file read/write through Tesseract configuration2024-07-03
Debian
CVE-2024-29511: ghostscript - Artifex Ghostscript before 10.03.1, when Tesseract is used for OCR, has a direct...2024
CVE-2024-29511 (HIGH CVSS 7.5) | Artifex Ghostscript before 10.03.1 | cvebase.io