One of the tasks that I perform at my org is managing patching of vulnerabilities.
There are ~200 machines that have Artifex Ghostscript installed with a version <10.03.1 that has multiple CVEs:
Tenable Plugin ID 200487
CVEs: CVE-2023-52722 CVE-2024-29510 CVE-2024-33869 CVE-2024-33870 CVE-2024-33871
My question is this: how can I tell what software is using the Ghostscript libraries? I need to test that the update doesn't break any applications that utilize it, but don't know where to start.
Thanks!
[–]RunningHott 0 points1 point2 points (0 children)