yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2023-46361
Component Overview
Vulnerability Overview
Name
CVE-2023-46361
Source
NVD (
link
)
Debian (
link
)
Description
Artifex Software jbig2dec v0.20 was discovered to contain a SEGV vulnerability via jbig2_error at /jbig2dec/jbig2.c.
CWEs
CWE-400
Published Date
Oct 31, 2023
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://github.com/Frank-Z7/z-vulnerabilitys/blob/main/jbig2dec-SEGV/jbig2dec-SEGV.md
Exploit
https://github.com/Frank-Z7/z-vulnerabilitys/blob/main/jbig2dec-SEGV/jbig2dec-SEGV.md
Exploit
Analysis
#
Affected Component
Analysis
ghostscript
Patched
Vulnerability Ratings
#
6.5
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
ghostscript
buildroot
2025.02.x
10.07.0
Not Affected
ghostscript
buildroot
master
10.07.0
Not Affected
ghostscript
yocto
master
10.07.1
Not Affected
ghostscript
yocto
scarthgap
10.05.1
Not Affected
Resolved with patches
#
ghostscript (yocto:kirkstone)
#
Title
Author
Resolve
1
Bug 705041: jbig2dec: Avoid uninitialized allocator in
Sebastian Rasmussen <sebras@gmail.com>
CVE-2023-46361