Description
Artifex Ghostscript through 10.05.1 has a stack-based buffer overflow in pdfmark_coerce_dest in devices/vector/gdevpdfm.c via a large size value.
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:NExploitability: 2.5 | Impact: 1.4Attack Vector: Local
Complexity: Low
Privileges: None
User Interaction: None
Scope: Changed
Confidentiality: None
Integrity: Low
Availability: None
Affected Packages4 packages
🔴Vulnerability Details
4OSVghostscript vulnerabilities↗2025-09-29 ▶ CVEListCVE-2025-59799: Artifex Ghostscript through 10↗2025-09-22 ▶ GHSAGHSA-9chm-r9vp-jrf5: Artifex Ghostscript through 10↗2025-09-22 ▶ OSVCVE-2025-59799: Artifex Ghostscript through 10↗2025-09-22 ▶ 📋Vendor Advisories
4UbuntuGhostscript vulnerabilities↗2025-12-03 ▶ UbuntuGhostscript vulnerabilities↗2025-09-29 ▶ Red HatArtifex Ghostscript: From CVEorg collector↗2025-09-22 ▶ DebianCVE-2025-59799: ghostscript - Artifex Ghostscript through 10.05.1 has a stack-based buffer overflow in pdfmark...↗2025 ▶