Alpaquita LinuxStreamSecurity Advisory
Search Cve

CVE-2024-46951

Published: October 7, 2024Last modified: February 28, 2025

Description

An issue was discovered in psi/zcolor.c in Artifex Ghostscript before 10.04.0. An unchecked Implementation pointer in Pattern color space could lead to arbitrary code execution.

Severity score breakdown

ParameterValue
Base score7.8
Attack VectorLOCAL
Attack complexityLOW
Privileges requiredNONE
User interactionREQUIRED
ScopeUNCHANGED
ConfidentialityHIGH
Integrity impactHIGH
Availability impactHIGH
VectorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Status

ProductReleasePackageStatus
Alpaquita Linux23 LTSghostscriptFixed (10.01.2-r3)
StreamghostscriptFixed (10.04.0-r0)

References

ON THIS PAGE