Protection Mechanism Failure
CVE-2024-29510
Summary
Artifex Ghostscript versions prior to ghostpdl-10.03.1 allow memory corruption and "SAFER" sandbox bypass via format string injection using the "uniprint" device.
- LOW
- LOCAL
- NONE
- CHANGED
- REQUIRED
- NONE
- HIGH
- NONE
CWE-693 - Protection Mechanism Failure
The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
References
Advisory Timeline
- Published