DEBIAN-CVE-2025-59798

Source
https://security-tracker.debian.org/tracker/CVE-2025-59798
Import Source
https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2025-59798.json
JSON Data
https://api.osv.dev/v1/vulns/DEBIAN-CVE-2025-59798
Upstream
Downstream
Published
2025-09-22T04:15:49.643Z
Modified
2025-11-20T10:18:26.175685Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

Artifex Ghostscript through 10.05.1 has a stack-based buffer overflow in pdfwritecmap in devices/vector/gdevpdtw.c.

References

Affected packages

Debian:11 / ghostscript

Package

Name
ghostscript
Purl
pkg:deb/debian/ghostscript?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
9.53.3~dfsg-7+deb11u11

Affected versions

9.*

9.53.3~dfsg-7
9.53.3~dfsg-7+deb11u1
9.53.3~dfsg-7+deb11u2
9.53.3~dfsg-7+deb11u3
9.53.3~dfsg-7+deb11u4
9.53.3~dfsg-7+deb11u5
9.53.3~dfsg-7+deb11u6
9.53.3~dfsg-7+deb11u7
9.53.3~dfsg-7+deb11u8
9.53.3~dfsg-7+deb11u9
9.53.3~dfsg-7+deb11u10

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / ghostscript

Package

Name
ghostscript
Purl
pkg:deb/debian/ghostscript?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.0.0~dfsg-11+deb12u8

Affected versions

10.*

10.0.0~dfsg-11
10.0.0~dfsg-11+deb12u1
10.0.0~dfsg-11+deb12u2
10.0.0~dfsg-11+deb12u3
10.0.0~dfsg-11+deb12u4
10.0.0~dfsg-11+deb12u5
10.0.0~dfsg-11+deb12u6
10.0.0~dfsg-11+deb12u7

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / ghostscript

Package

Name
ghostscript
Purl
pkg:deb/debian/ghostscript?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.05.1~dfsg-1+deb13u1

Affected versions

10.*

10.05.1~dfsg-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:14 / ghostscript

Package

Name
ghostscript
Purl
pkg:deb/debian/ghostscript?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
10.06.0~dfsg-1

Affected versions

10.*

10.05.1~dfsg-1
10.05.1~dfsg-2
10.05.1~dfsg-3

Ecosystem specific

{
    "urgency": "not yet assigned"
}