CVE-2007-6725
published 2009-04-08CVE-2007-6725: The CCITTFax decoding filter in Ghostscript 8.60, 8.61, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly…
PriorityP337high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
4.84%
91.0th percentile
The CCITTFax decoding filter in Ghostscript 8.60, 8.61, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PDF file that triggers a buffer underflow in the cf_decode_2d function.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| artifex | ghostscript | >= 0 < 8.63.dfsg.1-1 | 8.63.dfsg.1-1 |
| artifex | ghostscript | >= 0 < 8.63.dfsg.1-1 | 8.63.dfsg.1-1 |
| artifex | ghostscript | >= 0 < 8.63.dfsg.1-1 | 8.63.dfsg.1-1 |
| artifex | ghostscript | >= 0 < 8.63.dfsg.1-1 | 8.63.dfsg.1-1 |
| debian | ghostscript | < ghostscript 8.63.dfsg.1-1 (bookworm) | ghostscript 8.63.dfsg.1-1 (bookworm) |
| ghostscript | ghostscript | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5MEDIUM
vendor_redhat7.5HIGH
vendor_ubuntu7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Ghostscript vulnerabilities
vendor_ubuntu·2009-04-15·CVSS 7.5
CVE-2007-6725 [HIGH] Ghostscript vulnerabilities
Title: Ghostscript vulnerabilities
Summary: Ghostscript vulnerabilities
It was discovered that Ghostscript contained a buffer underflow in its
CCITTFax decoding filter. If a user or automated system were tricked into
opening a crafted PDF file, an attacker could cause a denial of service or
execute arbitrary code with privileges of the user invoking the program.
(CVE-2007-6725)
It was discovered that Ghostscript contained a buffer overflow in the
BaseFont writer module. If a user or automated system were tricked into
opening a crafted Postscript file, an attacker could cause a denial of
service or execute arbitrary code with privileges of the user invoking the
program. (CVE-2008-6679)
It was discovered that Ghostscript contained additional integer overflows
in its ICC color management
Red Hat
ghostscript: DoS (crash) in CCITTFax decoding filter
vendor_redhat·2007-02-19·CVSS 7.5
CVE-2007-6725 [HIGH] ghostscript: DoS (crash) in CCITTFax decoding filter
ghostscript: DoS (crash) in CCITTFax decoding filter
The CCITTFax decoding filter in Ghostscript 8.60, 8.61, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PDF file that triggers a buffer underflow in the cf_decode_2d function.
Debian
CVE-2007-6725: ghostscript - The CCITTFax decoding filter in Ghostscript 8.60, 8.61, and possibly other versi...
vendor_debian·2007·CVSS 7.5
CVE-2007-6725 [HIGH] CVE-2007-6725: ghostscript - The CCITTFax decoding filter in Ghostscript 8.60, 8.61, and possibly other versi...
The CCITTFax decoding filter in Ghostscript 8.60, 8.61, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PDF file that triggers a buffer underflow in the cf_decode_2d function.
Scope: local
bookworm: resolved (fixed in 8.63.dfsg.1-1)
bullseye: resolved (fixed in 8.63.dfsg.1-1)
forky: resolved (fixed in 8.63.dfsg.1-1)
sid: resolved (fixed in 8.63.dfsg.1-1)
trixie: resolved (fixed in 8.63.dfsg.1-1)
GHSA
GHSA-pv3g-wrcf-hmrv: The CCITTFax decoding filter in Ghostscript 8
ghsa_unreviewed·2022-05-01
CVE-2007-6725 [HIGH] CWE-119 GHSA-pv3g-wrcf-hmrv: The CCITTFax decoding filter in Ghostscript 8
The CCITTFax decoding filter in Ghostscript 8.60, 8.61, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PDF file that triggers a buffer underflow in the cf_decode_2d function.
OSV
CVE-2007-6725: The CCITTFax decoding filter in Ghostscript 8
osv·2009-04-08·CVSS 7.5
CVE-2007-6725 [HIGH] CVE-2007-6725: The CCITTFax decoding filter in Ghostscript 8
The CCITTFax decoding filter in Ghostscript 8.60, 8.61, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PDF file that triggers a buffer underflow in the cf_decode_2d function.
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00003.htmlhttp://secunia.com/advisories/34726http://secunia.com/advisories/34729http://secunia.com/advisories/34732http://secunia.com/advisories/35416http://secunia.com/advisories/35559http://secunia.com/advisories/35569http://sunsolve.sun.com/search/document.do?assetkey=1-26-262288-1http://support.avaya.com/elmodocs2/security/ASA-2009-155.htmhttp://wiki.rpath.com/Advisories:rPSA-2009-0060http://www.mail-archive.com/fedora-package-announce%40redhat.com/msg11830.htmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2009:095http://www.mandriva.com/security/advisories?name=MDVSA-2009:096http://www.openwall.com/lists/oss-security/2009/04/01/10http://www.redhat.com/support/errata/RHSA-2009-0420.htmlhttp://www.redhat.com/support/errata/RHSA-2009-0421.htmlhttp://www.securityfocus.com/archive/1/502757/100/0/threadedhttp://www.securityfocus.com/bid/34337http://www.vupen.com/english/advisories/2009/1708https://bugzilla.redhat.com/show_bug.cgi?id=229174https://bugzilla.redhat.com/show_bug.cgi?id=493442https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9507https://usn.ubuntu.com/757-1/http://lists.opensuse.org/opensuse-security-announce/2009-06/msg00003.htmlhttp://secunia.com/advisories/34726http://secunia.com/advisories/34729http://secunia.com/advisories/34732http://secunia.com/advisories/35416http://secunia.com/advisories/35559http://secunia.com/advisories/35569http://sunsolve.sun.com/search/document.do?assetkey=1-26-262288-1http://support.avaya.com/elmodocs2/security/ASA-2009-155.htmhttp://wiki.rpath.com/Advisories:rPSA-2009-0060http://www.mail-archive.com/fedora-package-announce%40redhat.com/msg11830.htmlhttp://www.mandriva.com/security/advisories?name=MDVSA-2009:095http://www.mandriva.com/security/advisories?name=MDVSA-2009:096http://www.openwall.com/lists/oss-security/2009/04/01/10http://www.redhat.com/support/errata/RHSA-2009-0420.htmlhttp://www.redhat.com/support/errata/RHSA-2009-0421.htmlhttp://www.securityfocus.com/archive/1/502757/100/0/threadedhttp://www.securityfocus.com/bid/34337http://www.vupen.com/english/advisories/2009/1708https://bugzilla.redhat.com/show_bug.cgi?id=229174https://bugzilla.redhat.com/show_bug.cgi?id=493442https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9507https://usn.ubuntu.com/757-1/
2009-04-08
Published