<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T21:16:39.271210+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2025:4362</id>
    <title>ALSA-2025:4362 — Moderate: ghostscript security update</title>
    <updated>2026-10-03T21:16:39.283787+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: ghostscript, AlmaLinux:8: ghostscript-doc, AlmaLinux:8: ghostscript-tools-dvipdf, AlmaLinux:8: ghostscript-tools-fonts, AlmaLinux:8: ghostscript-tools-printing, AlmaLinux:8: ghostscript-x11, AlmaLinux:8: libgs, AlmaLinux:8: libgs-devel</p>
<p>The Ghostscript suite contains utilities for rendering PostScript and PDF documents. Ghostscript translates PostScript code to common bitmap formats so that the code can be displayed or printed.</p>
<p>Security Fix(es):</p>
<p>* ghostscript: heap buffer over write vulnerability in GhostScript's lp8000_print_page() in gdevlp8k.c (CVE-2020-27792)
  * ghostscript: dangling pointer in gdev_prn_open_printer_seekable() (CVE-2023-46751)
  * ghostscript: Buffer Overflow in Ghostscript PDF XRef Stream Handling (CVE-2024-46952)
  * ghostscript: Arbitrary Code Execution in Artifex Ghostscript Pattern Color Space (CVE-2024-46951)
  * ghostscript: Directory Traversal in Ghostscript via Overlong UTF-8 Encoding (CVE-2024-46954)
  * ghostscript: Path Traversal and Code Execution via Integer Overflow in Ghostscript (CVE-2024-46953)
  * ghostscript: Out-of-Bounds Data Access in Ghostscript Leads to Arbitrary Code Execution (CVE-2024-46956)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2025:4362"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2024-09743</id>
    <title>bdu:2024-09743</title>
    <updated>2026-10-03T21:16:39.283867+00:00</updated>
    <content>bdu:2024-09743</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2024-09743"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bell-cve-2024-46953</id>
    <title>BELL-CVE-2024-46953</title>
    <updated>2026-10-03T21:16:39.283884+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p><strong>Affected:</strong> Alpaquita:23: ghostscript, Alpaquita:stream: ghostscript</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/bell-cve-2024-46953"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0938</id>
    <title>certfr-2025-avi-0938 — De multiples vulnérabilités ont été découvertes dans les produits VMware. Elles permettent à un attaquant de provoquer…</title>
    <updated>2026-10-03T21:16:39.283904+00:00</updated>
    <content>certfr-2025-avi-0938</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0938"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-258670</id>
    <title>EUVD-2026-258670</title>
    <updated>2026-10-03T21:16:39.283919+00:00</updated>
    <content>EUVD-2026-258670</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-258670"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2024-46953</id>
    <title>fkie_cve-2024-46953</title>
    <updated>2026-10-03T21:16:39.283930+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in base/gsdevice.c in Artifex Ghostscript before 10.04.0. An integer overflow when parsing the filename format string (for the output filename) results in path truncation, and possible path traversal and code execution.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2024-46953"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-qxhf-m3mr-36x5</id>
    <title>GHSA-qxhf-m3mr-36x5</title>
    <updated>2026-10-03T21:16:39.283951+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>An issue was discovered in base/gsdevice.c in Artifex Ghostscript before 10.04.0. An integer overflow when parsing the filename format string (for the output filename) results in path truncation, and possible path traversal and code execution.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-qxhf-m3mr-36x5"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2024-2310</id>
    <title>OESA-2024-2310 — ghostscript security update</title>
    <updated>2026-10-03T21:16:39.283966+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:22.03-LTS-SP1: ghostscript, openEuler:24.03-LTS: ghostscript, openEuler:22.03-LTS-SP4: ghostscript, openEuler:22.03-LTS-SP3: ghostscript, openEuler:20.03-LTS-SP4: ghostscript</p>
<p>Ghostscript is an interpreter for PostScript™ and Portable Document Format (PDF) files. Ghostscript consists of a PostScript interpreter layer, and a graphics library.

Security Fix(es):

VUL-0: CVE-2024-46953: ghostscript: An integer overflow when parsing the page format results in path truncation, path traversal, code execution(CVE-2024-46953)

VUL-0: CVE-2024-46956: ghostscript: Arbitrary code execution via out of bounds data access in filenameforall(CVE-2024-46956)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2024-2310"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:14423-1</id>
    <title>openSUSE-SU-2024:14423-1 — ghostscript-10.04.0-1.1 on GA media</title>
    <updated>2026-10-03T21:16:39.283996+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ghostscript-10.04.0-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:14423-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2025:7499</id>
    <title>RHSA-2025:7499 — Red Hat Security Advisory: ghostscript security update</title>
    <updated>2026-10-03T21:16:39.284015+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>ghostscript: Arbitrary Code Execution in Artifex Ghostscript Pattern Color Space ghostscript: Buffer Overflow in Ghostscript PDF XRef Stream Handling ghostscript: Path Traversal and Code Execution via Integer Overflow in Ghostscript ghostscript: Directory Traversal in Ghostscript via Overlong UTF-8 Encoding ghostscript: Out-of-Bounds Data Access in Ghostscript Leads to Arbitrary Code Execution</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2025:7499"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2024:3942-1</id>
    <title>SUSE-SU-2024:3942-1 — Security update for ghostscript</title>
    <updated>2026-10-03T21:16:39.284035+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for ghostscript</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2024:3942-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-46953</id>
    <title>UBUNTU-CVE-2024-46953</title>
    <updated>2026-10-03T21:16:39.284050+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: ghostscript, Ubuntu:Pro:18.04:LTS: ghostscript, Ubuntu:20.04:LTS: ghostscript, Ubuntu:22.04:LTS: ghostscript, Ubuntu:24.04:LTS: ghostscript</p>
<p>An issue was discovered in base/gsdevice.c in Artifex Ghostscript before 10.04.0. An integer overflow when parsing the filename format string (for the output filename) results in path truncation, and possible path traversal and code execution.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-46953"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3373</id>
    <title>WID-SEC-W-2024-3373 — Ghostscript: Mehrere Schwachstellen</title>
    <updated>2026-10-03T21:16:39.284073+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Ghostscript ausnutzen, um beliebigen Programmcode auszuführen oder vertrauliche Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2024-3373"/>
  </entry>
</feed>
