VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Artifex
>
Ghostscript
> 9.55.0
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2023-09-18
CVE-2023-43115
In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because they can switch to the IJS device, or change the IjsServer parameter, after SAFER has been activated.
network
low complexity
artifex
fedoraproject
8.8
8.8
2023-08-01
CVE-2023-38559
Classic Buffer Overflow vulnerability in multiple products
A buffer overflow flaw was found in base/gdevdevn.c:1973 in devn_pcx_write_rle() in ghostscript.
local
low complexity
artifex
redhat
fedoraproject
debian
CWE-120
5.5
5.5
2023-06-25
CVE-2023-36664
Artifex Ghostscript through 10.01.2 mishandles permission validation for pipe devices (with the %pipe% prefix or the | pipe character prefix).
local
low complexity
artifex
debian
fedoraproject
7.8
7.8
2023-03-31
CVE-2023-28879
Out-of-bounds Write vulnerability in multiple products
In Artifex Ghostscript through 10.01.0, there is a buffer overflow leading to potential corruption of data internal to the PostScript interpreter, in base/sbcp.c.
network
low complexity
artifex
debian
CWE-787
critical
9.8
9.8
2022-06-16
CVE-2022-2085
NULL Pointer Dereference vulnerability in multiple products
A NULL pointer dereference vulnerability was found in Ghostscript, which occurs when it tries to render a large number of bits in memory.
local
low complexity
artifex
fedoraproject
CWE-476
5.5
5.5
«
Previous
1
2
(current)
»