Debian Ghostscript vulnerabilities
162 known vulnerabilities affecting debian/ghostscript.
Total CVEs
162
CISA KEV
1
actively exploited
Public exploits
7
Exploited in wild
3
Severity breakdown
CRITICAL16HIGH59MEDIUM65LOW22
Vulnerabilities
Page 9 of 9
CVE-2025-48708P4LOWCVSS 4.0fixed in ghostscript 10.05.1~dfsg-1 (forky)2025
CVE-2025-48708 [MEDIUM] CVE-2025-48708: ghostscript - gs_lib_ctx_stash_sanitized_arg in base/gslibctx.c in Artifex Ghostscript before ...
gs_lib_ctx_stash_sanitized_arg in base/gslibctx.c in Artifex Ghostscript before 10.05.1 lacks argument sanitization for the # case. A created PDF document includes its password in cleartext.
Scope: local
bookworm: open
bullseye: open
forky: resolved (fixed in 10.05.1~dfsg-1)
sid: resolved (fixed in 10.05.1~dfsg-1)
trixie: resolved (fixed in 10.05.1~dfsg-1)
debian
CVE-2024-29508P4LOWCVSS 3.3fixed in ghostscript 10.0.0~dfsg-11+deb12u5 (bookworm)2024
CVE-2024-29508 [LOW] CVE-2024-29508: ghostscript - Artifex Ghostscript before 10.03.0 has a heap-based pointer disclosure (observab...
Artifex Ghostscript before 10.03.0 has a heap-based pointer disclosure (observable in a constructed BaseFont name) in the function pdf_base_font_alloc.
Scope: local
bookworm: resolved (fixed in 10.0.0~dfsg-11+deb12u5)
bullseye: resolved (fixed in 9.53.3~dfsg-7+deb11u8)
forky: resolved (fixed in 10.03.0~dfsg-1)
sid: resolved (fixed in 10.03.0~dfsg-1)
trixie: resol
debian
← Previous9 / 9