{"id":"RHSA-2026:74457","summary":"Red Hat Security Advisory: ghostscript security update","modified":"2026-10-02T10:32:33.591211593Z","published":"2026-10-02T10:25:53Z","upstream":["CVE-2026-39919"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2026:74457"},{"type":"ARTICLE","url":"https://access.redhat.com/security/updates/classification/#moderate"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2533857"},{"type":"ADVISORY","url":"https://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_74457.json"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2026-39919"},{"type":"ADVISORY","url":"https://www.cve.org/CVERecord?id=CVE-2026-39919"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-39919"},{"type":"ARTICLE","url":"https://bugs.ghostscript.com/show_bug.cgi?id=709666"},{"type":"ARTICLE","url":"https://github.com/ArtifexSoftware/ghostpdl-downloads/releases/tag/gs10080"},{"type":"ARTICLE","url":"https://github.com/ArtifexSoftware/ghostpdl/commit/0a8bf88e39db07b0751a58d6ec1cf992073e4dc1"},{"type":"ARTICLE","url":"https://www.vulncheck.com/advisories/ghostscript-heap-buffer-overflow-via-jpeg-2000-output-adapter"}],"affected":[{"package":{"name":"libgs","ecosystem":"Red Hat:enterprise_linux:9::appstream","purl":"pkg:rpm/redhat/libgs"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0:9.54.0-19.el9_8.1"}]}],"database_specific":{"source":"https://security.access.redhat.com/data/osv/RHSA-2026:74457.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H"}]}