CVE-2025-59800
published 2025-09-22CVE-2025-59800: In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c has an integer overflow that leads to a heap-based buffer overflow in ocr_line8.
PriorityP424medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.17%
6.2th percentile
In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c has an integer overflow that leads to a heap-based buffer overflow in ocr_line8.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| artifex | ghostscript | <= 10.05.1 | — |
| artifex | ghostscript | >= 0 < 10.06.0~dfsg-1 | 10.06.0~dfsg-1 |
| artifex | ghostscript | >= 0 < 9.55.0~dfsg1-0ubuntu5.13 | 9.55.0~dfsg1-0ubuntu5.13 |
| artifex | ghostscript | >= 0 < 10.02.1~dfsg1-0ubuntu7.8 | 10.02.1~dfsg1-0ubuntu7.8 |
| debian | ghostscript | < ghostscript 10.06.0~dfsg-1 (forky) | ghostscript 10.06.0~dfsg-1 (forky) |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian4.3LOW
vendor_redhat4.3MEDIUM
vendor_ubuntu4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Ghostscript vulnerabilities
vendor_ubuntu·2025-09-29·CVSS 4.3
CVE-2025-59799 [MEDIUM] Ghostscript vulnerabilities
Title: Ghostscript vulnerabilities
Summary: Several security issues were fixed in Ghostscript.
It was discovered that Ghostscript incorrectly handled opening a file to
write. An attacker could possibly use this issue to cause Ghostscript to
crash, resulting in a denial of service (CVE-2025-7462)
It was discovered that Ghostscript incorrectly handled writing certain
files. An attacker could possibly use this issue to cause Ghostscript to
crash, resulting in a denial of service (CVE-2025-59798, CVE-2025-59799)
It was discovered that Ghostscript incorrectly handled performing OCR on
certain files. An attacker could use this issue to cause Ghostscript to
crash, resulting in a denial of service, or possibly execute arbitrary
code. (CVE-2025-59800)
Instructions: In general, a standard syste
Red Hat
Artifex Ghostscript: Artifex Ghostscript: Denial of Service via crafted document processing
vendor_redhat·2025-09-22·CVSS 4.3
CVE-2025-59800 [MEDIUM] CWE-190 Artifex Ghostscript: Artifex Ghostscript: Denial of Service via crafted document processing
Artifex Ghostscript: Artifex Ghostscript: Denial of Service via crafted document processing
In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c has an integer overflow that leads to a heap-based buffer overflow in ocr_line8.
A flaw was found in Artifex Ghostscript. An integer overflow vulnerability, which occurs when a program attempts to store a number in an integer variable that is too small to hold it, leads to a heap-based buffer overflow. This allows a local attacker to cause a Denial of Service (DoS) by processing a specially crafted document.
Statement: This vulnerability is rated Moderate for Red Hat products. An integer overflow in Artifex Ghostscript's OCR processing, specifically in `ocr_begin_page`, can lead to a heap-based buffer overflow. This fl
Debian
CVE-2025-59800: ghostscript - In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c h...
vendor_debian·2025·CVSS 4.3
CVE-2025-59800 [MEDIUM] CVE-2025-59800: ghostscript - In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c h...
In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c has an integer overflow that leads to a heap-based buffer overflow in ocr_line8.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 10.06.0~dfsg-1)
sid: resolved (fixed in 10.06.0~dfsg-1)
trixie: open
OSV
ghostscript vulnerabilities
osv·2025-09-29·CVSS 5.5
CVE-2025-7462 [MEDIUM] ghostscript vulnerabilities
ghostscript vulnerabilities
It was discovered that Ghostscript incorrectly handled opening a file to
write. An attacker could possibly use this issue to cause Ghostscript to
crash, resulting in a denial of service (CVE-2025-7462)
It was discovered that Ghostscript incorrectly handled writing certain
files. An attacker could possibly use this issue to cause Ghostscript to
crash, resulting in a denial of service (CVE-2025-59798, CVE-2025-59799)
It was discovered that Ghostscript incorrectly handled performing OCR on
certain files. An attacker could use this issue to cause Ghostscript to
crash, resulting in a denial of service, or possibly execute arbitrary
code. (CVE-2025-59800)
OSV
CVE-2025-59800: In Artifex Ghostscript through 10
osv·2025-09-22·CVSS 5.5
CVE-2025-59800 [MEDIUM] CVE-2025-59800: In Artifex Ghostscript through 10
In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c has an integer overflow that leads to a heap-based buffer overflow in ocr_line8.
GHSA
GHSA-2mxc-fm8x-qgcp: In Artifex Ghostscript through 10
ghsa_unreviewed·2025-09-22
CVE-2025-59800 [MEDIUM] CWE-190 GHSA-2mxc-fm8x-qgcp: In Artifex Ghostscript through 10
In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c has an integer overflow that leads to a heap-based buffer overflow in ocr_line8.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-09-22
Published