Wind River Support Network

HomeDefectsLIN1023-5351
Fixed

LIN1023-5351 : Security Advisory - ghostscript - CVE-2024-33870

Created: May 9, 2024    Updated: Jul 3, 2024
Resolved Date: Jun 9, 2024
Found In Version: 10.23.30.1
Fix Version: 10.23.30.11
Severity: Standard
Applicable for: Wind River Linux LTS 23
Component/s: Userspace

Description

ghostscript: In addition to the noted bug; an error path (return from gp_file_name_reduce not successful) could elad to a memory leak as we did not free 'bufferfull'. Fix that too.

https://cgit.ghostscript.com/cgi-bin/cgit.cgi/ghostpdl.git/commit/?id=79aef19c685984dc3da2dc090450407d9fbcff80


CREATE(Triage):(User=admin) CVE-2024-33870 (https://nvd.nist.gov/vuln/detail/CVE-2024-33870)

CVEs


Live chat
Online