Skip to main content

Protection Mechanism Failure

CVE-2024-29510

Severity Medium
Score 6.3/10

Summary

Artifex Ghostscript versions prior to ghostpdl-10.03.1 allow memory corruption and "SAFER" sandbox bypass via format string injection using the "uniprint" device.

  • LOW
  • LOCAL
  • NONE
  • CHANGED
  • REQUIRED
  • NONE
  • HIGH
  • NONE

CWE-693 - Protection Mechanism Failure

The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.

Advisory Timeline

  • Published