PT-2025-38680 · Artifex+4 · Ghostscript+4

Published

2025-01-01

·

Updated

2026-04-21

·

CVE-2025-59800

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Artifex Ghostscript versions through 10.05.1
Description The ocr begin page function within devices/gdevpdfocr.c is susceptible to an integer overflow, which can result in a heap-based buffer overflow in the ocr line8 function.
Recommendations Update to a version of Artifex Ghostscript later than 10.05.1.

Exploit

Fix

Integer Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2025-12553
BDU:2025-11522
CVE-2025-59800
OESA-2026-1222
OESA-2026-1223
OESA-2026-1225
OESA-2026-1226
OPENSUSE-SU-2025:15707-1
OPENSUSE-SU-2026:20592-1
SUSE-SU-2026:21363-1
USN-7782-1

Affected Products

Alt Linux
Debian
Ghostscript
Linuxmint
Ubuntu