GCVE-VVD-MAGEIA-2023-134
Advisory Published
Vulnetix · Advisory published December 5, 2023
In Artifex Ghostscript through 10.01.0, there is a buffer overflow leading to potential corruption of data internal to the PostScript interpreter, in base/sbcp.c. This affects BCPEncode, BCPDecode, TBCPEncode, and TBCPDecode. If the write buffer is filled to one byte less than full, and one then tries to write an escaped character, two bytes are written. (CVE-2023-28879)

Affected Products

VendorProductVersionsPlatforms
Mageialyx0 (affected), 2.3.7-1.mga9 (unaffected)
Mageiaghostscript0 (affected), 9.53.3-2.4.mga8 (unaffected), 0 (affected), 9.53.3-2.4.mga8 (unaffected)

References

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.