Skip to main content

Vendor/product archive

artifex / ghostscript CVEs

Beta · best-effort

129 CVEs tagged to artifex / ghostscript12 Critical, 56 High, 60 Medium, 1 Low, 0 Unrated.

CVE-2025-59800

Published Sep 22, 2025

In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c has an integer overflow that leads to a heap-based buffer overflow in ocr_line8.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-59799

Published Sep 22, 2025

Artifex Ghostscript through 10.05.1 has a stack-based buffer overflow in pdfmark_coerce_dest in devices/vector/gdevpdfm.c via a large size value.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-59798

Published Sep 22, 2025

Artifex Ghostscript through 10.05.1 has a stack-based buffer overflow in pdf_write_cmap in devices/vector/gdevpdtw.c.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-48708

Published May 23, 2025

gs_lib_ctx_stash_sanitized_arg in base/gslibctx.c in Artifex Ghostscript before 10.05.1 lacks argument sanitization for the # case. A created PDF document includes its password in…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-46646

Published Apr 26, 2025

In Artifex Ghostscript before 10.05.0, decode_utf8 in base/gp_utf8.c mishandles overlong UTF-8 encoding. NOTE: this issue exists because of an incomplete fix for CVE-2024-46954.

CVSS 4.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2025-27837

Published Mar 25, 2025

An issue was discovered in Artifex Ghostscript before 10.05.0. Access to arbitrary files can occur through a truncated path with invalid UTF-8 characters, for base/gp_mswin.c and…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-27836

Published Mar 25, 2025

An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-27835

Published Mar 25, 2025

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs when converting glyphs to Unicode in psi/zbfont.c.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-27834

Published Mar 25, 2025

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs via an oversized Type 4 function in a PDF document to pdf/pdf_func.c.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-27833

Published Mar 25, 2025

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs for a long TTF font name to pdf/pdf_fmap.c.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2025-27832

Published Mar 25, 2025

An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for contrib/japanese/gdevnpdl.c.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-27831

Published Mar 25, 2025

An issue was discovered in Artifex Ghostscript before 10.05.0. The DOCXWRITE TXTWRITE device has a text buffer overflow via long characters to devices/vector/doc_common.c.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2025-27830

Published Mar 25, 2025

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs during serialization of DollarBlend in a font, for base/write_t1.c and psi/zfapi.c.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-46954

Published Nov 10, 2024

An issue was discovered in decode_utf8 in base/gp_utf8.c in Artifex Ghostscript before 10.04.0. Overlong UTF-8 encoding leads to possible ../ directory traversal.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-33871

Published Jul 3, 2024

An issue was discovered in Artifex Ghostscript before 10.03.1. contrib/opvp/gdevopvp.c allows arbitrary code execution via a custom Driver library, exploitable via a crafted PostS…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2024-33870

Published Jul 3, 2024

An issue was discovered in Artifex Ghostscript before 10.03.1. There is path traversal (via a crafted PostScript document) to arbitrary files if the current directory is in the pe…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-33869

Published Jul 3, 2024

An issue was discovered in Artifex Ghostscript before 10.03.1. Path traversal and command execution can occur (via a crafted PostScript document) because of path reduction in base…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-29511

Published Jul 3, 2024

Artifex Ghostscript before 10.03.1, when Tesseract is used for OCR, has a directory traversal issue that allows arbitrary file reading (and writing of error messages to arbitrary…

CVSS 7.5 · High
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2024-29510

Published Jul 3, 2024

Artifex Ghostscript before 10.03.1 allows memory corruption, and SAFER sandbox bypass, via format string injection with a uniprint device.

CVSS 6.3 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2024-29507

Published Jul 3, 2024

Artifex Ghostscript before 10.03.0 sometimes has a stack-based buffer overflow via the CIDFSubstPath and CIDFSubstFont parameters.

CVSS 5.4 · Medium
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort
Showing 1-25 of 129 CVEsPage 1 of 6