ELSA-2025-4362

ELSA-2025-4362 - ghostscript security update

Type:SECURITY
Impact:MODERATE
Release Date:2025-04-30

Description


[9.27-16]
- RHEL-18396 CVE-2023-46751 ghostscript: dangling pointer in gdev_prn_open_printer_seekable()
- RHEL-67046 CVE-2024-46951 ghostscript: Arbitrary Code Execution in Artifex Ghostscript Pattern Color Space
- RHEL-15067 CVE-2020-27792 ghostscript: heap buffer over write vulnerability in GhostScript's lp8000_print_page() in gdevlp8k.c
- RHEL-67051 CVE-2024-46954 ghostscript: Directory Traversal in Ghostscript via Overlong UTF-8 Encoding
- RHEL-67051 CVE-2024-46953 ghostscript: Path Traversal and Code Execution via Integer Overflow in Ghostscript
- RHEL-67051 CVE-2024-46956 ghostscript: Out-of-Bounds Data Access in Ghostscript Leads to Arbitrary Code Execution


Related CVEs


CVE-2024-46954
CVE-2023-46751
CVE-2024-46956
CVE-2024-46952
CVE-2020-27792
CVE-2024-46951
CVE-2024-46953

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) ghostscript-9.27-16.el8_10.src.rpm6a6f38eace3d5df3dacbea64d541811bd6b82f1432da7573739727ab83ddd631-ol8_aarch64_appstream
ghostscript-9.27-16.el8_10.src.rpm6a6f38eace3d5df3dacbea64d541811bd6b82f1432da7573739727ab83ddd631-ol8_aarch64_codeready_builder
ghostscript-9.27-16.el8_10.aarch64.rpmd3509ffe294615d529a9f5adba215203290a7472d41544da893db17c0fb6c623-ol8_aarch64_appstream
ghostscript-doc-9.27-16.el8_10.noarch.rpm469cae418f45381ebecabc79dd6253c06e83d3d7bfe8b38a7dcd422f184a3b9e-ol8_aarch64_codeready_builder
ghostscript-tools-dvipdf-9.27-16.el8_10.aarch64.rpm87c158724930ece7557bdb43f78b787b377bff491c5dfd171aef54db359587e9-ol8_aarch64_codeready_builder
ghostscript-tools-fonts-9.27-16.el8_10.aarch64.rpm2f7b447ca6a728e592860cf2141d0dc8a7e5ada63c844681fdd358ec02491d4b-ol8_aarch64_codeready_builder
ghostscript-tools-printing-9.27-16.el8_10.aarch64.rpma92cca356e35ad12db8b9e77b57981c93715682429d28acbe99616f806e58ead-ol8_aarch64_codeready_builder
ghostscript-x11-9.27-16.el8_10.aarch64.rpm15f9693bee22e5a20dce60131798eb09407e1acb0a98619c67a0e254d13f7cbc-ol8_aarch64_appstream
libgs-9.27-16.el8_10.aarch64.rpm6188c34cb40f8079fad3e6646fa805f418a23c46b30779560ae9493ee2c0f94e-ol8_aarch64_appstream
libgs-devel-9.27-16.el8_10.aarch64.rpmd35ac2367268e41e678ea4311b3656ca3b30abff2b8543f4ea77537d46c818b9-ol8_aarch64_codeready_builder
Oracle Linux 8 (x86_64) ghostscript-9.27-16.el8_10.src.rpm6a6f38eace3d5df3dacbea64d541811bd6b82f1432da7573739727ab83ddd631-ol8_x86_64_appstream
ghostscript-9.27-16.el8_10.src.rpm6a6f38eace3d5df3dacbea64d541811bd6b82f1432da7573739727ab83ddd631-ol8_x86_64_codeready_builder
ghostscript-9.27-16.el8_10.x86_64.rpma1bcd595e0c1962d99093d9780743d014cc459bbfe93f4cc79905ea192436eda-ol8_x86_64_appstream
ghostscript-doc-9.27-16.el8_10.noarch.rpm469cae418f45381ebecabc79dd6253c06e83d3d7bfe8b38a7dcd422f184a3b9e-ol8_x86_64_codeready_builder
ghostscript-tools-dvipdf-9.27-16.el8_10.x86_64.rpm2c3a63cbfaa91002187d27192ddf780442d9cc256c829e99c7e180ded1d1f6bc-ol8_x86_64_codeready_builder
ghostscript-tools-fonts-9.27-16.el8_10.x86_64.rpme3221713161f50d9b15c35abfb5a050efd80f1e66fbf9f15b2317ac9f5666ab1-ol8_x86_64_codeready_builder
ghostscript-tools-printing-9.27-16.el8_10.x86_64.rpm881364fd9743c58c40aa1810a81386ceb2dea4066d2b1c6ec8e401ed03c786f7-ol8_x86_64_codeready_builder
ghostscript-x11-9.27-16.el8_10.x86_64.rpm0a7add3cd510f151a03f337d01ce85ad049e9019577e5fcd0ba7f648e604c5a0-ol8_x86_64_appstream
libgs-9.27-16.el8_10.i686.rpm9e565f1a99057911b0bef6c318ddf3aa2b30aa4345b96d63cecff9a5d4488828-ol8_x86_64_appstream
libgs-9.27-16.el8_10.x86_64.rpm90442246868cac2864c7f73a8f2194af90222b9d12cc0b2c9f3710fae17a290d-ol8_x86_64_appstream
libgs-devel-9.27-16.el8_10.i686.rpmc8d294ce235e76610aff5cc56e6425d8812876c73d9302a0f82a48e983c8b5d1-ol8_x86_64_codeready_builder
libgs-devel-9.27-16.el8_10.x86_64.rpm9711c9e2d78de93cd4a59a589639c51b88edc8c81c34e857c521e018b435a658-ol8_x86_64_codeready_builder



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete