New Debian ghostscript 10.0.0~dfsg-11+deb12u7 fixes: This update addresses the following issues: 10.0.0~dfsg-11+deb12u7 (Wed, 26 Mar 2025 10:10:35 +0100) * Non-maintainer upload by the Security Team. * Fix confusion between bytes and shorts (CVE-2025-27835) * Avoid integer overflow leading to buffer overflow (CVE-2025-27832) * PCL interpreter - fix decode_glyph for Unicode * Prevent Unicode decoding overrun (CVE-2025-27831) * Fix potential print buffer overflow (CVE-2025-27836) * Fix potential Buffer overflow with DollarBlend (CVE-2025-27830) * Cope with double byte chars in TTF scanning code * Check TTF name size before copying to buffer. (CVE-2025-27833) * PDF interpreter - Guard against unsigned int overflow (CVE-2025-27834) * Fix Coverity IDs 457699 and 457700
--- mirror/ftp/pool/main/g/ghostscript/ghostscript_10.0.0~dfsg-11+deb12u6.dsc +++ apt/ucs_5.2-0-errata5.2-1/source/ghostscript_10.0.0~dfsg-11+deb12u7.dsc @@ -1,3 +1,17 @@ +10.0.0~dfsg-11+deb12u7 [Wed, 26 Mar 2025 10:10:35 +0100] Salvatore Bonaccorso <carnil@debian.org>: + + * Non-maintainer upload by the Security Team. + * Fix confusion between bytes and shorts (CVE-2025-27835) + * Avoid integer overflow leading to buffer overflow (CVE-2025-27832) + * PCL interpreter - fix decode_glyph for Unicode + * Prevent Unicode decoding overrun (CVE-2025-27831) + * Fix potential print buffer overflow (CVE-2025-27836) + * Fix potential Buffer overflow with DollarBlend (CVE-2025-27830) + * Cope with double byte chars in TTF scanning code + * Check TTF name size before copying to buffer. (CVE-2025-27833) + * PDF interpreter - Guard against unsigned int overflow (CVE-2025-27834) + * Fix Coverity IDs 457699 and 457700 + 10.0.0~dfsg-11+deb12u6 [Sun, 10 Nov 2024 13:20:08 +0100] Salvatore Bonaccorso <carnil@debian.org>: * Non-maintainer upload by the Security Team. <http://piuparts.knut.univention.de/5.2-1/#4378534822318314738>
OK: bug OK: yaml OK: announce_errata OK: patch OK: piuparts [5.2-1] 692d1bce97 Bug #58148: ghostscript 10.0.0~dfsg-11+deb12u7 doc/errata/staging/ghostscript.yaml | 20 ++++++++++++++++++++ 1 file changed, 20 insertions(+)
<https://errata.software-univention.de/#/?erratum=5.2x58>