Artifex Ghostscript before 9.53.0 has an out-of-bounds write and use-after-free in devices/vector/gdevtxtw.c (for txtwrite) because a single character code in a PDF document can map to more than one Unicode code point (e.g., for a ligature).
References
Link | Resource |
---|---|
https://bugs.ghostscript.com/show_bug.cgi?id=702229 | Issue Tracking Patch |
https://bugzilla.opensuse.org/show_bug.cgi?id=1177922 | Issue Tracking |
https://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=8c7bd787defa071c96289b7da9397f673fddb874 | Broken Link |
https://github.com/ArtifexSoftware/ghostpdl-downloads/releases/tag/gs9530 | Release Notes |
Configurations
Configuration 1 (hide)
|
History
04 Mar 2024, 23:04
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:artifex:ghostscript:9.52:*:*:*:*:*:*:* cpe:2.3:a:artifex:ghostscript:9.52.1:*:*:*:*:*:*:* cpe:2.3:a:artifex:ghostscript:9.53.0:rc1:*:*:*:*:*:* cpe:2.3:a:artifex:ghostscript:9.51:*:*:*:*:*:*:* cpe:2.3:a:artifex:ghostscript:9.53.0:rc2:*:*:*:*:*:* |
13 Feb 2024, 00:39
Type | Values Removed | Values Added |
---|---|---|
First Time |
Artifex
Artifex ghostscript |
|
CPE | cpe:2.3:a:artifex:ghostscript:*:*:*:*:*:*:*:* | |
CWE | CWE-787 CWE-416 |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
References | () https://git.ghostscript.com/?p=ghostpdl.git%3Ba=commit%3Bh=8c7bd787defa071c96289b7da9397f673fddb874 - Broken Link | |
References | () https://github.com/ArtifexSoftware/ghostpdl-downloads/releases/tag/gs9530 - Release Notes | |
References | () https://bugzilla.opensuse.org/show_bug.cgi?id=1177922 - Issue Tracking | |
References | () https://bugs.ghostscript.com/show_bug.cgi?id=702229 - Issue Tracking, Patch |
04 Feb 2024, 18:16
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-02-04 18:16
Updated : 2024-03-04 23:04
NVD link : CVE-2020-36773
Mitre link : CVE-2020-36773
CVE.ORG link : CVE-2020-36773
JSON object : View
Products Affected
artifex
- ghostscript