SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2024-46953

An integer overflow when parsing the filename format string (for the output filename) results in path truncation, and possible path traversal and code execution.

HIGH 7.8EPSS 0.39%

Does this matter?

High impact if exploited, but EPSS currently rates exploitation as unlikely (0.39%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.

Description

An issue was discovered in base/gsdevice.c in Artifex Ghostscript before 10.04.0. An integer overflow when parsing the filename format string (for the output filename) results in path truncation, and possible path traversal and code execution.

CVSS 3.1
7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS
0.39% probability · 32th percentile
CISA KEV
Not listed
Weakness
CWE-190
Affected
artifex/ghostscript · debian/debian linux · suse/linux enterprise high performance computing · suse/linux enterprise server · suse/linux enterprise server for sap
Source
cve@mitre.org

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.