-------------------------------------------------------------------------
Debian LTS Advisory DLA-3931-1                debian-lts@lists.debian.org
https://www.debian.org/lts/security/                         Sean Whitton
October 22, 2024                              https://wiki.debian.org/LTS
-------------------------------------------------------------------------

Package        : ghostscript
Version        : 9.53.3~dfsg-7+deb11u8
CVE ID         : CVE-2024-29508

A heap-based pointer disclosure problem was found in Ghostscript, an
interpreter for the PostScript language and for PDF.  This could lead to
information disclosure.

For Debian 11 bullseye, this problem has been fixed in version
9.53.3~dfsg-7+deb11u8.

We recommend that you upgrade your ghostscript packages.

For the detailed security status of ghostscript please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/ghostscript

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS

Debian LTS: DLA-3931-1: ghostscript Security Advisory Updates

October 22, 2024
A heap-based pointer disclosure problem was found in Ghostscript, an interpreter for the PostScript language and for PDF

Summary

For Debian 11 bullseye, this problem has been fixed in version
9.53.3~dfsg-7+deb11u8.

We recommend that you upgrade your ghostscript packages.

For the detailed security status of ghostscript please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/ghostscript

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
Package : ghostscript
Version : 9.53.3~dfsg-7+deb11u8
CVE ID : CVE-2024-29508

Related News