This update for ghostscript fixes the following issues:
CVE-2023-36664: Fixed permission validation mishandling for pipe devices with the %pipe% prefix or the | pipe character prefix (bsc#1212711).
Affected Packages
ghostscript
SUSE Linux Enterprise Server 12 SP2-BCLSUSE Linux Enterprise Server 12 SP4-ESPOSSUSE Linux Enterprise Server 12 SP4-LTSSSUSE Linux Enterprise Server 12 SP5SUSE Linux Enterprise Server for SAP Applications 12 SP4
Fixed in:
9.52-23.54.1
ghostscript-devel
SUSE Linux Enterprise Server 12 SP2-BCLSUSE Linux Enterprise Server 12 SP4-ESPOSSUSE Linux Enterprise Server 12 SP4-LTSSSUSE Linux Enterprise Server 12 SP5SUSE Linux Enterprise Server for SAP Applications 12 SP4
Fixed in:
9.52-23.54.1
ghostscript-x11
SUSE Linux Enterprise Server 12 SP2-BCLSUSE Linux Enterprise Server 12 SP4-ESPOSSUSE Linux Enterprise Server 12 SP4-LTSSSUSE Linux Enterprise Server 12 SP5SUSE Linux Enterprise Server for SAP Applications 12 SP4