CVE-2025-27836
published 2025-03-25CVE-2025-27836: An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.
PriorityP351critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
0.58%
43.9th percentile
An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| artifex | ghostscript | < 10.05.0 | 10.05.0 |
| artifex | ghostscript | >= 0 < 9.53.3~dfsg-7+deb11u10 | 9.53.3~dfsg-7+deb11u10 |
| artifex | ghostscript | >= 0 < 10.0.0~dfsg-11+deb12u7 | 10.0.0~dfsg-11+deb12u7 |
| artifex | ghostscript | >= 0 < 10.05.0~dfsg-1 | 10.05.0~dfsg-1 |
| artifex | ghostscript | >= 0 < 10.05.0~dfsg-1 | 10.05.0~dfsg-1 |
| artifex | ghostscript | >= 0 < 9.50~dfsg-5ubuntu4.15 | 9.50~dfsg-5ubuntu4.15 |
| artifex | ghostscript | >= 0 < 9.55.0~dfsg1-0ubuntu5.11 | 9.55.0~dfsg1-0ubuntu5.11 |
| artifex | ghostscript | >= 0 < 9.55.0~dfsg1-0ubuntu5.12 | 9.55.0~dfsg1-0ubuntu5.12 |
| artifex | ghostscript | >= 0 < 10.02.1~dfsg1-0ubuntu7.5 | 10.02.1~dfsg1-0ubuntu7.5 |
| artifex | ghostscript | >= 0 < 10.02.1~dfsg1-0ubuntu7.7 | 10.02.1~dfsg1-0ubuntu7.7 |
| artifex | ghostscript | >= 0 < 9.26~dfsg+0-0ubuntu0.16.04.14+esm9 | 9.26~dfsg+0-0ubuntu0.16.04.14+esm9 |
| artifex | ghostscript | >= 0 < 9.26~dfsg+0-0ubuntu0.18.04.18+esm4 | 9.26~dfsg+0-0ubuntu0.18.04.18+esm4 |
| artifex | ghostscript | >= 0 < 9.50~dfsg-5ubuntu4.15+esm1 | 9.50~dfsg-5ubuntu4.15+esm1 |
| debian | ghostscript | < ghostscript 10.0.0~dfsg-11+deb12u7 (bookworm) | ghostscript 10.0.0~dfsg-11+deb12u7 (bookworm) |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
osv9.8CRITICAL
vendor_debian9.8CRITICAL
vendor_redhat9.8CRITICAL
vendor_ubuntu7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
ghostscript vulnerabilities
osv·2025-07-08·CVSS 4.3
CVE-2023-39327 [MEDIUM] ghostscript vulnerabilities
ghostscript vulnerabilities
It was discovered that OpenJPEG, vendored in Ghostscript did not correctly
handle large image files. If a user or system were tricked into opening a
specially crafted file, an attacker could possibly use this issue to cause
a denial of service. This issue only affected Ubuntu 16.04 LTS and Ubuntu
18.04 LTS. (CVE-2023-39327) Thomas Rinsma discovered that Ghostscript did
not correctly handle printing certain variables. An attacker could possibly
use this issue to leak sensitive information. This issue only affected
Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. (CVE-2024-29508) It was discovered
that Ghostscript did not correctly handle loading certain libraries. An
attacker could possibly use this issue to execute arbitrary code. This
issue only affected Ubuntu 16.04 LT
OSV
ghostscript vulnerabilities
osv·2025-03-27·CVSS 7.8
CVE-2025-27830 [HIGH] ghostscript vulnerabilities
ghostscript vulnerabilities
It was discovered that Ghostscript incorrectly serialized DollarBlend in
certain fonts. An attacker could use this issue to cause Ghostscript to
crash, resulting in a denial of service, or possibly execute arbitrary
code. (CVE-2025-27830)
It was discovered that Ghostscript incorrectly handled the DOCXWRITE
TXTWRITE device. An attacker could use this issue to cause Ghostscript to
crash, resulting in a denial of service, or possibly execute arbitrary
code. This issue only affected Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, and
Ubuntu 24.10. (CVE-2025-27831)
It was discovered that Ghostscript incorrectly handled the NPDL device. An
attacker could use this issue to cause Ghostscript to crash, resulting in a
denial of service, or possibly execute arbitrary code. (CVE-202
OSV
CVE-2025-27836: An issue was discovered in Artifex Ghostscript before 10
osv·2025-03-25·CVSS 9.8
CVE-2025-27836 [CRITICAL] CVE-2025-27836: An issue was discovered in Artifex Ghostscript before 10
An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.
GHSA
GHSA-96p6-38w3-wjpv: An issue was discovered in Artifex Ghostscript before 10
ghsa_unreviewed·2025-03-25
CVE-2025-27836 [CRITICAL] CWE-120 GHSA-96p6-38w3-wjpv: An issue was discovered in Artifex Ghostscript before 10
An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.
Ubuntu
Ghostscript vulnerabilities
vendor_ubuntu·2025-07-08·CVSS 4.3
CVE-2025-27835 [MEDIUM] Ghostscript vulnerabilities
Title: Ghostscript vulnerabilities
Summary: Several security issues were fixed in Ghostscript.
It was discovered that OpenJPEG, vendored in Ghostscript did not correctly
handle large image files. If a user or system were tricked into opening a
specially crafted file, an attacker could possibly use this issue to cause
a denial of service. This issue only affected Ubuntu 16.04 LTS and Ubuntu
18.04 LTS. (CVE-2023-39327) Thomas Rinsma discovered that Ghostscript did
not correctly handle printing certain variables. An attacker could possibly
use this issue to leak sensitive information. This issue only affected
Ubuntu 16.04 LTS and Ubuntu 18.04 LTS. (CVE-2024-29508) It was discovered
that Ghostscript did not correctly handle loading certain libraries. An
attacker could possibly use this issue
Ubuntu
Ghostscript vulnerabilities
vendor_ubuntu·2025-03-27·CVSS 7.8
CVE-2025-27830 [HIGH] Ghostscript vulnerabilities
Title: Ghostscript vulnerabilities
Summary: Several security issues were fixed in Ghostscript.
It was discovered that Ghostscript incorrectly serialized DollarBlend in
certain fonts. An attacker could use this issue to cause Ghostscript to
crash, resulting in a denial of service, or possibly execute arbitrary
code. (CVE-2025-27830)
It was discovered that Ghostscript incorrectly handled the DOCXWRITE
TXTWRITE device. An attacker could use this issue to cause Ghostscript to
crash, resulting in a denial of service, or possibly execute arbitrary
code. This issue only affected Ubuntu 22.04 LTS, Ubuntu 24.04 LTS, and
Ubuntu 24.10. (CVE-2025-27831)
It was discovered that Ghostscript incorrectly handled the NPDL device. An
attacker could use this issue to cause Ghostscript to crash, resulting
Red Hat
Ghostscript: device: Print buffer overflow
vendor_redhat·2025-03-25·CVSS 9.8
CVE-2025-27836 [CRITICAL] CWE-120 Ghostscript: device: Print buffer overflow
Ghostscript: device: Print buffer overflow
An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.
A flaw was found in Artifex Ghostscript. The BJ10V device has a print buffer overflow in contrib/japanese/gdev10v.c.
Mitigation: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Package: ghostscript (Red Hat Enterprise Linux 10) - Fix deferred
Package: ghostscript (Red Hat Enterprise Linux 6) - Fix deferred
Package: ghostscript (Red Hat Enterprise Linux 7) - Fix deferred
Package: ghostscript (Red Hat Enterprise Linux 8) -
Debian
CVE-2025-27836: ghostscript - An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device ...
vendor_debian·2025·CVSS 9.8
CVE-2025-27836 [CRITICAL] CVE-2025-27836: ghostscript - An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device ...
An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c.
Scope: local
bookworm: resolved (fixed in 10.0.0~dfsg-11+deb12u7)
bullseye: resolved (fixed in 9.53.3~dfsg-7+deb11u10)
forky: resolved (fixed in 10.05.0~dfsg-1)
sid: resolved (fixed in 10.05.0~dfsg-1)
trixie: resolved (fixed in 10.05.0~dfsg-1)
No detection rules found.
No public exploits indexed.
2025-03-25
Published