Bugzilla – Bug 1227382
VUL-0: CVE-2024-29506: ghostscript: stack-based buffer overflow in the pdfi_apply_filter()
Last modified: 2024-07-16 08:10:05 UTC
Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi_apply_filter() function via a long PDF filter name. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2024-29506 https://www.cve.org/CVERecord?id=CVE-2024-29506 https://bugs.ghostscript.com/show_bug.cgi?id=707510 https://git.ghostscript.com/?p=ghostpdl.git;h=77dc7f699beba606937b7ea23b50cf5974fa64b1 http://www.openwall.com/lists/oss-security/2024/07/03/7 https://bugs.ghostscript.com/show_bug.cgi?id=707662 https://codeanlabs.com/blog/research/cve-2024-29510-ghostscript-format-string-exploitation/ https://bugzilla.redhat.com/show_bug.cgi?id=2295626