yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2023-52722
Component Overview
Vulnerability Overview
Name
CVE-2023-52722
Source
NVD (
link
)
Debian (
link
)
Description
An issue was discovered in Artifex Ghostscript before 10.03.1. psi/zmisc1.c, when SAFER mode is used, allows eexec seeds other than the Type 1 standard.
CWEs
Published Date
Apr 28, 2024
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://www.openwall.com/lists/oss-security/2024/06/28/2
Mailing List
https://cgit.ghostscript.com/cgi-bin/cgit.cgi/ghostpdl.git/commit/?id=afd7188f74918cb51b5fb89f52b54eb16e8acfd1
Patch
http://www.openwall.com/lists/oss-security/2024/06/28/2
Mailing List
https://cgit.ghostscript.com/cgi-bin/cgit.cgi/ghostpdl.git/commit/?id=afd7188f74918cb51b5fb89f52b54eb16e8acfd1
Patch
Analysis
#
Affected Component
Analysis
ghostscript
Patched
Vulnerability Ratings
#
5.5
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
ghostscript
buildroot
2025.02.x
10.07.0
Not Affected
ghostscript
buildroot
master
10.07.0
Not Affected
ghostscript
yocto
master
10.07.1
Not Affected
ghostscript
yocto
scarthgap
10.05.1
Not Affected
Resolved with patches
#
ghostscript (yocto:kirkstone)
#
Title
Author
Resolve
1
In SAFER (default) don't allow eexec seeds other than the
Chris Liddell <chris.liddell@artifex.com>
CVE-2023-52722