Wind River Support Network

HomeDefectsLIN1021-8697
Fixed

LIN1021-8697 : Security Advisory - ghostscript - CVE-2024-33870

Created: May 9, 2024    Updated: Jul 3, 2024
Resolved Date: Jul 3, 2024
Found In Version: 10.21.20.1
Severity: Standard
Applicable for: Wind River Linux LTS 21
Component/s: Userspace

Description

ghostscript: In addition to the noted bug; an error path (return from gp_file_name_reduce not successful) could elad to a memory leak as we did not free 'bufferfull'. Fix that too.

https://cgit.ghostscript.com/cgi-bin/cgit.cgi/ghostpdl.git/commit/?id=79aef19c685984dc3da2dc090450407d9fbcff80


CREATE(Triage):(User=admin) CVE-2024-33870 (https://nvd.nist.gov/vuln/detail/CVE-2024-33870)

CVEs


Live chat
Online