{"id":57538,"date":"2024-06-18T17:42:28","date_gmt":"2024-06-18T14:42:28","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/179134\/USN-6835-1.txt"},"modified":"2024-06-18T17:42:28","modified_gmt":"2024-06-18T14:42:28","slug":"ubuntu-security-notice-usn-6835-1","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/ubuntu-security-notice-usn-6835-1\/","title":{"rendered":"Ubuntu Security Notice USN-6835-1"},"content":{"rendered":"<p>&#8212;&#8211;BEGIN PGP SIGNED MESSAGE&#8212;&#8211;<br \/>Hash: SHA512<br \/>NotDashEscaped: You need gpg to verify this message<\/p>\n<p>==========================================================================<br \/>Ubuntu Security Notice USN-6835-1<br \/>June 17, 2024<\/p>\n<p>ghostscript vulnerabilities<br \/>==========================================================================<\/p>\n<p>A security issue affects these releases of Ubuntu and its derivatives:<\/p>\n<p>&#8211; Ubuntu 24.04 LTS<br \/>&#8211; Ubuntu 23.10<br \/>&#8211; Ubuntu 22.04 LTS<br \/>&#8211; Ubuntu 20.04 LTS<\/p>\n<p>Summary:<\/p>\n<p>Several security issues were fixed in Ghostscript.<\/p>\n<p>Software Description:<br \/>&#8211; ghostscript: PostScript and PDF interpreter<\/p>\n<p>Details:<\/p>\n<p>It was discovered that Ghostscript did not properly restrict eexec<br \/>seeds to those specified by the Type 1 Font Format standard when<br \/>SAFER mode is used. An attacker could use this issue to bypass SAFER<br \/>restrictions and cause unspecified impact. (CVE-2023-52722)<br \/>This issue only affected Ubuntu 20.04 LTS, Ubuntu 22.04 LTS, and Ubuntu 23.10.<\/p>\n<p>Thomas Rinsma discovered that Ghostscript did not prevent changes to<br \/>uniprint device argument strings after SAFER is activated, resulting<br \/>in a format-string vulnerability. An attacker could possibly use this<br \/>to execute arbitrary code. (CVE-2024-29510)<\/p>\n<p>Zdenek Hutyra discovered that Ghostscript did not properly perform<br \/>path reduction when validating paths. An attacker could use this to<br \/>access file locations outside of those allowed by SAFER policy and<br \/>possibly execute arbitrary code. (CVE-2024-33869)<\/p>\n<p>Zdenek Hutyra discovered that Ghostscript did not properly check<br \/>arguments when reducing paths. An attacker could use this to<br \/>access file locations outside of those allowed by SAFER policy.<br \/>(CVE-2024-33870)<\/p>\n<p>Zdenek Hutyra discovered that the &#8220;Driver&#8221; parameter for Ghostscript&#8217;s<br \/>&#8220;opvp&#8221;\/&#8221;oprp&#8221; device allowed specifying the name of an arbitrary dynamic<br \/>library to load. An attacker could use this to execute arbitrary code.<br \/>(CVE-2024-33871)<\/p>\n<p>Update instructions:<\/p>\n<p>The problem can be corrected by updating your system to the following<br \/>package versions:<\/p>\n<p>Ubuntu 24.04 LTS<br \/>ghostscript 10.02.1~dfsg1-0ubuntu7.1<br \/>ghostscript-doc 10.02.1~dfsg1-0ubuntu7.1<\/p>\n<p>Ubuntu 23.10<br \/>ghostscript 10.01.2~dfsg1-0ubuntu2.3<br \/>ghostscript-doc 10.01.2~dfsg1-0ubuntu2.3<br \/>ghostscript-x 10.01.2~dfsg1-0ubuntu2.3<\/p>\n<p>Ubuntu 22.04 LTS<br \/>ghostscript 9.55.0~dfsg1-0ubuntu5.7<br \/>ghostscript-doc 9.55.0~dfsg1-0ubuntu5.7<br \/>ghostscript-x 9.55.0~dfsg1-0ubuntu5.7<\/p>\n<p>Ubuntu 20.04 LTS<br \/>ghostscript 9.50~dfsg-5ubuntu4.12<br \/>ghostscript-doc 9.50~dfsg-5ubuntu4.12<br \/>ghostscript-x 9.50~dfsg-5ubuntu4.12<\/p>\n<p>In general, a standard system update will make all the necessary changes.<\/p>\n<p>References:<br \/>https:\/\/ubuntu.com\/security\/notices\/USN-6835-1<br \/>CVE-2023-52722, CVE-2024-29510, CVE-2024-33869, CVE-2024-33870,<br \/>CVE-2024-33871<\/p>\n<p>Package Information:<br \/>https:\/\/launchpad.net\/ubuntu\/+source\/ghostscript\/10.02.1~dfsg1-0ubuntu7.1<br \/>https:\/\/launchpad.net\/ubuntu\/+source\/ghostscript\/10.01.2~dfsg1-0ubuntu2.3<br \/>https:\/\/launchpad.net\/ubuntu\/+source\/ghostscript\/9.55.0~dfsg1-0ubuntu5.7<br \/>https:\/\/launchpad.net\/ubuntu\/+source\/ghostscript\/9.50~dfsg-5ubuntu4.12<br \/>&#8212;&#8211;BEGIN PGP SIGNATURE&#8212;&#8211;<\/p>\n<p>iQIzBAEBCgAdFiEETB\/nIDy9nvCSgAUj3gXQmO\/Tr3wFAmZwxK4ACgkQ3gXQmO\/T<br \/>r3yOAQ\/+NUTiKTAkI\/XpceJpULY0tJiBZR37xhnxiKSuFoAQY5RrRuGxpC6sPXwi<br \/>16Xoyo2gvDEfeaV4zn\/jCfw4Lf4L1+JNbAOS1Yvnvg0Ags+b\/bAUAlMV0E+7Jyap<br \/>gVbd7T8c2oIMFFq6S78qi5Gl4kyHYiVAgxZNtJiMztTpF+qG2frcObLIW5JpzQZ3<br \/>mZIRtoSAjyhKOoAfq2BXq\/nuk0GzXu4wGEN2FEag6VRRW92Ti0rfdYjNYgcQ44Ii<br \/>VTM5bYtvIjqI+uLbUEUiPQ91OZ4yg3K\/pTRLnIVyoAo95Huqc6N+lZmXD97yokXj<br \/>m4BU1iWSFBUS2kf\/3aoNtkGqhIv\/2sGYs3CNHBC23eE7IXsBbwaCpeF8Ogsx2eKe<br \/>phpJMeCtvdTmq4+s0l5r4mwAKhHuvklQGwHe\/5sDpJbZTW1qtdWmFzXaiKyHGDDw<br \/>0nEyKkRKP0c3yC6I0Aht2gVk\/pYiwhpVe5TGICl0lbRXO7DEEU5ns2t+C0xnMBz4<br \/>cV2FE6rouRDJTlFPWtLmxT0BpHn+xBMLabEuPFJAlXRjy9dLKPrZVgkXe\/9NROQm<br \/>hUCuuKAHLKWK8rZC1c3T2DiE9dDQZs9KUZRKB0ZhZzLYC+pGu8DW9Ud6NDMB3LAO<br \/>yDANPKeEG+09Ho2u4NbhbuLUMSzvNazZDpm2ZMi1vECul\/nZ\/ns=<br \/>=WJrB<br \/>&#8212;&#8211;END PGP SIGNATURE&#8212;&#8211;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8212;&#8211;BEGIN PGP SIGNED MESSAGE&#8212;&#8211;Hash: SHA512NotDashEscaped: You need gpg to verify this message ==========================================================================Ubuntu Security Notice USN-6835-1June 17, 2024 ghostscript vulnerabilities========================================================================== A security issue affects these releases of Ubuntu and its derivatives: &#8211; Ubuntu 24.04 LTS&#8211; Ubuntu 23.10&#8211; Ubuntu 22.04 LTS&#8211; Ubuntu 20.04 LTS Summary: Several security issues were fixed in Ghostscript. Software Description:&#8211; ghostscript: PostScript &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-57538","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/57538","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=57538"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/57538\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=57538"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=57538"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=57538"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}