Description
An issue was discovered in base/gsdevice.c in Artifex Ghostscript before 10.04.0. An integer overflow when parsing the filename format string (for the output filename) results in path truncation, and possible path traversal and code execution.
References
lists.debian.org/debian-lts-announce/2024/11/msg00023.html
bugs.ghostscript.com/show_bug.cgi?id=707793
github.com/...fexSoftware/ghostpdl/blob/master/doc/News.html
www.suse.com/...update/announcement/2024/suse-su-20243942-1/
cgit.ghostscript.com/...a45df0fa3abec4cff12951022b192dda3c00
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.