Zum Inhalt springen.
Sympa Menü

it-securitynotifies - [IT-SecNots] [SECURITY] [DSA 5760-1] ghostscript security update

it-securitynotifies AT lists.piratenpartei.de

Betreff: Sicherheitsankündigungen

Listenarchiv

[IT-SecNots] [SECURITY] [DSA 5760-1] ghostscript security update


Chronologisch Thread  
  • From: Salvatore Bonaccorso <carnil AT debian.org>
  • To: debian-security-announce AT lists.debian.org
  • Subject: [IT-SecNots] [SECURITY] [DSA 5760-1] ghostscript security update
  • Date: Thu, 29 Aug 2024 15:27:00 +0000
  • List-archive: https://lists.debian.org/msgid-search/E1sjh36-00EBRO-AT AT seger.debian.org
  • List-id: <debian-security-announce.lists.debian.org>
  • List-url: <http://lists.debian.org/debian-security-announce/>
  • Old-dkim-signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=debian.org; s=smtpauto.seger; h=Date:Message-Id:Subject:To:From:Reply-To:Cc:MIME-Version: Content-Type:Content-Transfer-Encoding:Content-ID:Content-Description: In-Reply-To:References; bh=g4uAMAFeRov1skMwCPlIR5L/m4MptMCQ5xBZdNQzMfM=; b=mJ OSjioag+upUoPMT2i7dMdx27zwVSytUbGTmynETwxpJ8v0F3946UP941GuucCyYv9hqcwTB68ftqj bDqw9nf3S1/J9esnuhrzOfSYWnARO0rsa94pjb2EeyiYrxrM5YZTsodJPZjs0Jp/4xn57gaVnTL94 ZEVWZ5EZsG2jk3UhNjkFmKfNyJzB87YAqqQdqMlHKt41MF4wyyMsscyXyhderUgBO5bXurzl3S2Qn KTPh4VTX4CIJVuOwBT0365+VJ8DplLU8hNWz+X47biYPcz4CKRqN+PUOodPxM2Ueor077CRFOKuJt /QDWmmZ2ChiP4pANP4SvUkCHp5uE+dmQ==;
  • Old-return-path: <carnil AT seger.debian.org>
  • Priority: urgent
  • Resent-date: Thu, 29 Aug 2024 15:27:27 +0000 (UTC)
  • Resent-from: debian-security-announce AT lists.debian.org
  • Resent-message-id: <jLl4sR3C6cD.A.6fEC.fNJ0mB@bendel>
  • Resent-sender: debian-security-announce-request AT lists.debian.org

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- -------------------------------------------------------------------------
Debian Security Advisory DSA-5760-1 security AT debian.org
https://www.debian.org/security/ Salvatore Bonaccorso
August 29, 2024 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : ghostscript
CVE ID : CVE-2024-29506 CVE-2024-29507 CVE-2024-29508 CVE-2024-29509

Multiple security issues were discovered in Ghostscript, the GPL
PostScript/PDF interpreter, which could result in denial of service and
potentially the execution of arbitrary code if malformed document files
are processed.

For the stable distribution (bookworm), these problems have been fixed in
version 10.0.0~dfsg-11+deb12u5.

We recommend that you upgrade your ghostscript packages.

For the detailed security status of ghostscript please refer to its
security tracker page at:
https://security-tracker.debian.org/tracker/ghostscript

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----
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=NB+2
-----END PGP SIGNATURE-----



  • [IT-SecNots] [SECURITY] [DSA 5760-1] ghostscript security update, Salvatore Bonaccorso, 29.08.2024

Archiv bereitgestellt durch MHonArc 2.6.19+.

Seitenanfang