boB Rudis 🇺🇦 on Nostr: Um… CVE-2024-29510 (Ghostscript format string vuln that lets RCE escape the ...
Um… CVE-2024-29510 (Ghostscript format string vuln that lets RCE escape the sandbox) sounds…bad? Especially since GS is in many automagic document processing pipelines in thousands of orgs (who likely don't know it’s powering their pipelines).
https://codeanlabs.com/blog/research/cve-2024-29510-ghostscript-format-string-exploitation/
https://codeanlabs.com/blog/research/cve-2024-29510-ghostscript-format-string-exploitation/