{"id":"UBUNTU-CVE-2023-46048","details":"** DISPUTED ** Tex Live 944e257 has a NULL pointer dereference in texk/web2c/pdftexdir/writet1.c. NOTE: this is disputed because it should be categorized as a usability problem.","modified":"2024-03-27T05:15:00Z","published":"2024-03-27T05:15:00Z","withdrawn":"2025-06-23T15:56:55Z","references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2023-46048"},{"type":"REPORT","url":"https://tug.org/pipermail/tex-live/2023-August/049400.html"},{"type":"REPORT","url":"http://seclists.org/fulldisclosure/2024/Jan/65"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2023-46048"}],"affected":[{"package":{"name":"texlive-bin","ecosystem":"Ubuntu:Pro:16.04:LTS","purl":"pkg:deb/ubuntu/texlive-bin"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2015.20150524.37493-5build1","2015.20150524.37493-7","2015.20150524.37493-7build1","2015.20150524.37493-7build4","2015.20160222.37495-1","2015.20160222.37495-1ubuntu0.1"],"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2023/UBUNTU-CVE-2023-46048.json"}},{"package":{"name":"texlive-bin","ecosystem":"Ubuntu:Pro:18.04:LTS","purl":"pkg:deb/ubuntu/texlive-bin"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2017.20170613.44572-5build1","2017.20170613.44572-5build2","2017.20170613.44572-6","2017.20170613.44572-6build1","2017.20170613.44572-6ubuntu1","2017.20170613.44572-8build1","2017.20170613.44572-8ubuntu0.1","2017.20170613.44572-8ubuntu0.2"],"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2023/UBUNTU-CVE-2023-46048.json"}},{"package":{"name":"texlive-bin","ecosystem":"Ubuntu:20.04:LTS","purl":"pkg:deb/ubuntu/texlive-bin"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2019.20190605.51237-2build1","2019.20190605.51237-3","2019.20190605.51237-3build1","2019.20190605.51237-3build2","2019.20190605.51237-3ubuntu0.1","2019.20190605.51237-3ubuntu0.2"],"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2023/UBUNTU-CVE-2023-46048.json"}},{"package":{"name":"texlive-bin","ecosystem":"Ubuntu:22.04:LTS","purl":"pkg:deb/ubuntu/texlive-bin"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2020.20200327.54578-7","2020.20200327.54578-7build1","2021.20210626.59705-1","2021.20210626.59705-1build1","2021.20210626.59705-1ubuntu0.1","2021.20210626.59705-1ubuntu0.2"],"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2023/UBUNTU-CVE-2023-46048.json"}},{"package":{"name":"texlive-bin","ecosystem":"Ubuntu:24.04:LTS","purl":"pkg:deb/ubuntu/texlive-bin"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["2023.20230311.66589-6","2023.20230311.66589-7","2023.20230311.66589-8","2023.20230311.66589-8build1","2023.20230311.66589-9","2023.20230311.66589-9build2","2023.20230311.66589-9build3"],"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2023/UBUNTU-CVE-2023-46048.json"}}],"schema_version":"1.7.3"}