pkg:Debian/ghostscript

220 total CVEsCRITICAL15HIGH94MEDIUM76LOW3

✅ Check your installed version

All known vulnerabilities

  • HIGH7.8CVE-2017-8291⚠ KEVghostscript - security update
    from 0, < 9.05~dfsg-6.3+deb7u6
  • HIGH7.8CVE-2017-8291⚠ KEVghostscript - security update
    from 0, < 9.20~dfsg-3.1
  • CRITICAL9.9CVE-2021-3781ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u1
  • CRITICAL9.9CVE-2021-3781ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u1
  • CRITICAL9.8CVE-2025-27836An issue was discovered in Artifex Ghostscript before 10.05.0.
    from 0, < 9.53.3~dfsg-7+deb11u10
  • CRITICAL9.8CVE-2025-27832An issue was discovered in Artifex Ghostscript before 10.05.0.
    from 0, < 9.53.3~dfsg-7+deb11u10
  • CRITICAL9.8CVE-2025-27831An issue was discovered in Artifex Ghostscript before 10.05.0.
    from 0, < 9.53.3~dfsg-7+deb11u10
  • CRITICAL9.8CVE-2020-36773Artifex Ghostscript before 9.53.0 has an out-of-bounds write and use-after-free in devices/vector/gdevtxtw.c (for txtwrite) because a singl…
    from 0, < 9.53.0~dfsg-1
  • CRITICAL9.8CVE-2023-28879ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u4
  • CRITICAL9.8CVE-2023-28879ghostscript - security update
    from 0, < 9.27~dfsg-2+deb10u7
  • CRITICAL9.8CVE-2023-28879ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u4
  • CRITICAL9.8CVE-2020-15900A memory corruption issue was found in Artifex Ghostscript 9.50 and 9.52.
    from 0, < 9.52.1~dfsg-1
  • CRITICAL9.8CVE-2019-14813A flaw was found in ghostscript, versions 9.x before 9.50, in the setsystemparams procedure where it did not properly secure its privileged…
    from 0, < 9.28~~rc2~dfsg-1
  • CRITICAL9.8CVE-2018-19409ghostscript - security update
    from 0, < 9.26~dfsg-1
  • CRITICAL9.8CVE-2018-19409ghostscript - security update
    from 0, < 9.06~dfsg-2+deb8u12
  • CRITICAL9.8CVE-2016-7979Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently execute arbitrary code…
    from 0, < 9.19~dfsg-3.1
  • CRITICAL9.8CVE-2016-7978Use-after-free vulnerability in Ghostscript 9.20 might allow remote attackers to execute arbitrary code via vectors related to a reference…
    from 0, < 9.19~dfsg-3.1
  • HIGH8.8CVE-2024-33871An issue was discovered in Artifex Ghostscript before 10.03.1.
    from 0, < 9.53.3~dfsg-7+deb11u7
  • HIGH8.8CVE-2024-29509Artifex Ghostscript before 10.03.0 has a heap-based overflow when PDFPassword (e.g., for runpdf) has a \000 byte in the middle.
    from 0, < 10.0.0~dfsg-11+deb12u5
  • HIGH8.8CVE-2024-29506ghostscript - security update
    from 0, < 10.0.0~dfsg-11+deb12u5
  • HIGH8.8CVE-2024-29506ghostscript - security update
    from 0, < 10.0.0~dfsg-11+deb12u5
  • HIGH8.8CVE-2023-43115In Artifex Ghostscript through 10.01.2, gdevijs.c in GhostPDL can lead to remote code execution via crafted PostScript documents because th…
    from 0, < 9.53.3~dfsg-7+deb11u6
  • HIGH8.8CVE-2019-14869ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb8u6
  • HIGH8.8CVE-2019-14869ghostscript - security update
    from 0, < 9.50~dfsg-3
  • HIGH8.8CVE-2019-14869ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb9u6
  • HIGH8.8CVE-2016-7976The PS Interpreter in Ghostscript 9.18 and 9.20 allows remote attackers to execute arbitrary code via crafted userparams.
    from 0, < 9.19~dfsg-3.1
  • HIGH8.6CVE-2018-18284Artifex Ghostscript 9.25 and earlier allows attackers to bypass a sandbox protection mechanism via vectors involving the 1Policy operator.
    from 0, < 9.25~dfsg-3
  • HIGH8.6CVE-2018-17961ghostscript - security update
    from 0, < 9.25~dfsg-3
  • HIGH8.6CVE-2018-17961ghostscript - security update
    from 0, < 9.06~dfsg-2+deb8u11
  • HIGH7.8CVE-2025-27835An issue was discovered in Artifex Ghostscript before 10.05.0.
    from 0, < 9.53.3~dfsg-7+deb11u10
  • HIGH7.8CVE-2025-27834An issue was discovered in Artifex Ghostscript before 10.05.0.
    from 0, < 10.0.0~dfsg-11+deb12u7
  • HIGH7.8CVE-2025-27833An issue was discovered in Artifex Ghostscript before 10.05.0.
    from 0, < 10.0.0~dfsg-11+deb12u7
  • HIGH7.8CVE-2025-27830ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u10
  • HIGH7.8CVE-2025-27830ghostscript - security update
    from 0, < 10.0.0~dfsg-11+deb12u7
  • HIGH7.8CVE-2025-27830ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u10
  • HIGH7.8CVE-2024-46956An issue was discovered in psi/zfile.c in Artifex Ghostscript before 10.04.0.
    from 0, < 9.53.3~dfsg-7+deb11u9
  • HIGH7.8CVE-2024-46954An issue was discovered in decode_utf8 in base/gp_utf8.c in Artifex Ghostscript before 10.04.0.
    from 0, < 10.04.0~dfsg-1
  • HIGH7.8CVE-2024-46953An issue was discovered in base/gsdevice.c in Artifex Ghostscript before 10.04.0.
    from 0, < 9.53.3~dfsg-7+deb11u9
  • HIGH7.8CVE-2024-46952An issue was discovered in pdf/pdf_xref.c in Artifex Ghostscript before 10.04.0.
    from 0, < 10.0.0~dfsg-11+deb12u6
  • HIGH7.8CVE-2024-46951ghostscript - security update
    from 0, < 10.0.0~dfsg-11+deb12u6
  • HIGH7.8CVE-2024-46951ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u9
  • HIGH7.8CVE-2024-46951ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u9
  • HIGH7.8CVE-2020-21890Buffer Overflow vulnerability in clj_media_size function in devices/gdevclj.c in Artifex Ghostscript 9.50 allows remote attackers to cause…
    from 0, < 9.51~dfsg-1
  • HIGH7.8CVE-2023-36664ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u5
  • HIGH7.8CVE-2023-36664ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u5
  • HIGH7.8CVE-2019-25059ghostscript - security update
    from 0, < 9.27~dfsg-1
  • HIGH7.8CVE-2019-25059ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb9u9
  • HIGH7.8CVE-2022-1350A vulnerability classified as problematic was found in GhostPCL 9.55.0.
    from 0
  • HIGH7.8CVE-2020-16303A use-after-free vulnerability in xps_finish_image_path() in devices/vector/gdevxps.c of Artifex Software GhostScript v9.50 allows a remote…
    from 0, < 9.51~dfsg-1
  • HIGH7.8CVE-2019-14812A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privile…
    from 0, < 9.28~~rc2~dfsg-1
  • HIGH7.8CVE-2019-10216ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb8u4
  • HIGH7.8CVE-2019-10216ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb9u4
  • HIGH7.8CVE-2019-10216ghostscript - security update
    from 0, < 9.27~dfsg-3.1
  • HIGH7.8CVE-2019-14817A flaw was found in, ghostscript versions prior to 9.50, in the .pdfexectoken and other procedures where it did not properly secure its pri…
    from 0, < 9.28~~rc2~dfsg-1
  • HIGH7.8CVE-2019-14811ghostscript - security update
    from 0, < 9.28~~rc2~dfsg-1
  • HIGH7.8CVE-2019-14811ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb9u5
  • HIGH7.8CVE-2019-14811ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb8u5
  • HIGH7.8CVE-2019-3839ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb9u3
  • HIGH7.8CVE-2019-3839ghostscript - security update
    from 0, < 9.27~dfsg-1
  • HIGH7.8CVE-2019-3839ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb8u3
  • HIGH7.8CVE-2019-6116ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb8u1
  • HIGH7.8CVE-2019-6116ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb9u1
  • HIGH7.8CVE-2019-6116ghostscript - security update
    from 0, < 9.26a~dfsg-1
  • HIGH7.8CVE-2018-19134ghostscript - security update
    from 0, < 9.26~dfsg-1
  • HIGH7.8CVE-2018-19134ghostscript - security update
    from 0, < 9.26~dfsg-0+deb9u1
  • HIGH7.8CVE-2018-19134ghostscript - security update
    from 0, < 9.06~dfsg-2+deb8u13
  • HIGH7.8CVE-2018-19477psi/zfjbig2.c in Artifex Ghostscript before 9.26 allows remote attackers to bypass intended access restrictions because of a JBIG2Decode ty…
    from 0, < 9.26~dfsg-1
  • HIGH7.8CVE-2018-19476psi/zicc.c in Artifex Ghostscript before 9.26 allows remote attackers to bypass intended access restrictions because of a setcolorspace typ…
    from 0, < 9.26~dfsg-1
  • HIGH7.8CVE-2018-19475psi/zdevice2.c in Artifex Ghostscript before 9.26 allows remote attackers to bypass intended access restrictions because available stack sp…
    from 0, < 9.26~dfsg-1
  • HIGH7.8CVE-2018-17183Artifex Ghostscript before 9.25 allowed a user-writable error exception table, which could be used by remote attackers able to supply craft…
    from 0, < 9.25~dfsg-1
  • HIGH7.8CVE-2018-16802An issue was discovered in Artifex Ghostscript before 9.25.
    from 0, < 9.25~dfsg-1
  • HIGH7.8CVE-2018-16585An issue was discovered in Artifex Ghostscript before 9.24.
    from 0, < 9.25~dfsg-1
  • HIGH7.8CVE-2018-16543ghostscript - security update
    from 0, < 9.25~dfsg-1
  • HIGH7.8CVE-2018-16543ghostscript - security update
    from 0, < 9.06~dfsg-2+deb8u9
  • HIGH7.8CVE-2018-16540In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files to the builtin PDF14 converter could use a use-after-…
    from 0, < 9.22~dfsg-3
  • HIGH7.8CVE-2018-16513In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the setcolor function t…
    from 0, < 9.22~dfsg-3
  • HIGH7.8CVE-2018-16511An issue was discovered in Artifex Ghostscript before 9.24.
    from 0, < 9.22~dfsg-3
  • HIGH7.8CVE-2018-16510An issue was discovered in Artifex Ghostscript before 9.24.
    from 0, < 9.25~dfsg-1
  • HIGH7.8CVE-2018-16509ghostscript - security update
    from 0, < 9.20~dfsg-3.2+deb9u5
  • HIGH7.8CVE-2018-16509ghostscript - security update
    from 0, < 9.25~dfsg-1
  • HIGH7.8CVE-2018-15911In Artifex Ghostscript 9.23 before 2018-08-24, attackers able to supply crafted PostScript could use uninitialized memory access in the aes…
    from 0, < 9.22~dfsg-3
  • HIGH7.8CVE-2018-15910In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the LockDistillerParams…
    from 0, < 9.22~dfsg-3
  • HIGH7.8CVE-2018-15909In Artifex Ghostscript 9.23 before 2018-08-24, a type confusion using the .shfill operator could be used by attackers able to supply crafte…
    from 0, < 9.22~dfsg-3
  • HIGH7.8CVE-2018-15908ghostscript - security update
    from 0, < 9.20~dfsg-3.2+deb9u4
  • HIGH7.8CVE-2018-15908ghostscript - security update
    from 0, < 9.22~dfsg-3
  • HIGH7.8CVE-2018-10194ghostscript - security update
    from 0, < 9.22~dfsg-2.1
  • HIGH7.8CVE-2018-10194ghostscript - security update
    from 0, < 9.05~dfsg-6.3+deb7u8
  • HIGH7.8CVE-2017-11714ghostscript - security update
    from 0, < 9.06~dfsg-2+deb8u6
  • HIGH7.8CVE-2017-11714ghostscript - security update
    from 0, < 9.05~dfsg-6.3+deb7u7
  • HIGH7.8CVE-2017-11714ghostscript - security update
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-9835The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (heap-base…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-9740The xps_decode_font_char_imp function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of se…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-9739The Ins_JMPR function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-ba…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-9727The gx_ttfReader__Read function in base/gxttfb.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-9726The Ins_MDRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-ba…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-9620The xps_select_font_encoding function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of se…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-9619The xps_true_callback_glyph_name function in xps/xpsttf.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-9618The xps_load_sfnt_name function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-9612The Ins_IP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (use-after…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-9611The Ins_MIRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-ba…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-9610The xps_load_sfnt_name function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2017-7948Integer overflow in the mark_curve function in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds…
    from 0, < 9.22~dfsg-1
  • HIGH7.8CVE-2016-8602The .sethalftone5 function in psi/zht2.c in Ghostscript before 9.21 allows remote attackers to cause a denial of service (application crash…
    from 0, < 9.19~dfsg-3.1
  • HIGH7.8CVE-2016-10317The fill_threshhold_buffer function in base/gxht_thresh.c in Artifex Software, Inc.
    from 0, < 9.22~dfsg-2.1
  • HIGH7.5CVE-2024-29511Artifex Ghostscript before 10.03.1, when Tesseract is used for OCR, has a directory traversal issue that allows arbitrary file reading (and…
    from 0
  • HIGH7.5CVE-2023-46751ghostscript - security update
    from 0, < 10.0.0~dfsg-11+deb12u3
  • HIGH7.5CVE-2023-46751ghostscript - security update
    from 0, < 10.0.0~dfsg-11+deb12u3
  • HIGH7.1CVE-2020-27792ghostscript - security update
    from 0, < 9.51~dfsg-1
  • HIGH7.1CVE-2020-27792ghostscript - security update
    from 0, < 9.27~dfsg-2+deb10u6
  • MEDIUM6.3CVE-2024-33870An issue was discovered in Artifex Ghostscript before 10.03.1.
    from 0, < 9.53.3~dfsg-7+deb11u7
  • MEDIUM6.3CVE-2024-29510Artifex Ghostscript before 10.03.1 allows memory corruption, and SAFER sandbox bypass, via format string injection with a uniprint device.
    from 0, < 9.53.3~dfsg-7+deb11u7
  • MEDIUM6.3CVE-2018-18073Artifex Ghostscript allows attackers to bypass a sandbox protection mechanism by leveraging exposure of system operators in the saved execu…
    from 0, < 9.25~dfsg-3
  • MEDIUM5.5CVE-2025-59800In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c has an integer overflow that leads to a heap-based buffer ov…
    from 0
  • MEDIUM5.5CVE-2025-59799Artifex Ghostscript through 10.05.1 has a stack-based buffer overflow in pdfmark_coerce_dest in devices/vector/gdevpdfm.c via a large size…
    from 0, < 9.53.3~dfsg-7+deb11u11
  • MEDIUM5.5CVE-2025-59798ghostscript - security update
    from 0, < 10.0.0~dfsg-11+deb12u8
  • MEDIUM5.5CVE-2025-59798ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u11
  • MEDIUM5.5CVE-2025-59798ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u11
  • MEDIUM5.5CVE-2024-46955An issue was discovered in psi/zcolor.c in Artifex Ghostscript before 10.04.0.
    from 0, < 9.53.3~dfsg-7+deb11u9
  • MEDIUM5.5CVE-2023-52722ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u7
  • MEDIUM5.5CVE-2023-52722ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u7
  • MEDIUM5.5CVE-2020-21710ghostscript - security update
    from 0, < 9.27~dfsg-2+deb10u9
  • MEDIUM5.5CVE-2020-21710ghostscript - security update
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2023-38560An integer overflow flaw was found in pcl/pl/plfont.c:418 in pl_glyph_name in ghostscript.
    from 0
  • MEDIUM5.5CVE-2023-38559ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u6
  • MEDIUM5.5CVE-2023-38559ghostscript - security update
    from 0, < 9.27~dfsg-2+deb10u8
  • MEDIUM5.5CVE-2022-2085A NULL pointer dereference vulnerability was found in Ghostscript, which occurs when it tries to render a large number of bits in memory.
    from 0, < 9.56.0~dfsg-1
  • MEDIUM5.5CVE-2021-45949Ghostscript GhostPDL 9.50 through 9.54.0 has a heap-based buffer overflow in sampled_data_finish (called from sampled_data_continue and int…
    from 0, < 9.53.3~dfsg-7+deb11u2
  • MEDIUM5.5CVE-2021-45944ghostscript - security update
    from 0, < 9.27~dfsg-2+deb10u5
  • MEDIUM5.5CVE-2021-45944ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u2
  • MEDIUM5.5CVE-2021-45944ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb9u8
  • MEDIUM5.5CVE-2020-14373A use after free was found in igc_reloc_struct_ptr() of psi/igc.c of ghostscript-9.25.
    from 0, < 9.26~dfsg-1
  • MEDIUM5.5CVE-2020-17538A buffer overflow vulnerability in GetNumSameData() in contrib/lips4/gdevlips.c of Artifex Software GhostScript from v9.18 to v9.50 allows…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16310A division by zero vulnerability in dot24_print_page() in devices/gdevdm24.c of Artifex Software GhostScript v9.50 allows a remote attacker…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16309A buffer overflow vulnerability in lxm5700m_print_page() in devices/gdevlxm.c of Artifex Software GhostScript v9.50 allows a remote attacke…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16308A buffer overflow vulnerability in p_print_image() in devices/gdevcdj.c of Artifex Software GhostScript v9.50 allows a remote attacker to c…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16307A null pointer dereference vulnerability in devices/vector/gdevtxtw.c and psi/zbfont.c of Artifex Software GhostScript v9.50 allows a remot…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16306A null pointer dereference vulnerability in devices/gdevtsep.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a de…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16305A buffer overflow vulnerability in pcx_write_rle() in contrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a remote atta…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16304A buffer overflow vulnerability in image_render_color_thresh() in base/gxicolor.c of Artifex Software GhostScript v9.18 to v9.50 allows a r…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16302A buffer overflow vulnerability in jetp3852_print_page() in devices/gdev3852.c of Artifex Software GhostScript v9.50 allows a remote attack…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16301A buffer overflow vulnerability in okiibm_print_page1() in devices/gdevokii.c of Artifex Software GhostScript v9.50 allows a remote attacke…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16300A buffer overflow vulnerability in tiff12_print_page() in devices/gdevtfnx.c of Artifex Software GhostScript v9.50 allows a remote attacker…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16299A Division by Zero vulnerability in bj10v_print_page() in contrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a remote…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16298A buffer overflow vulnerability in mj_color_correct() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote a…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16297A buffer overflow vulnerability in FloydSteinbergDitheringC() in contrib/gdevbjca.c of Artifex Software GhostScript v9.18 to v9.50 allows a…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16296A buffer overflow vulnerability in GetNumWrongData() in contrib/lips4/gdevlips.c of Artifex Software GhostScript from v9.18 to v9.50 allows…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16295A null pointer dereference vulnerability in clj_media_size() in devices/gdevclj.c of Artifex Software GhostScript v9.50 allows a remote att…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16294A buffer overflow vulnerability in epsc_print_page() in devices/gdevepsc.c of Artifex Software GhostScript v9.50 allows a remote attacker t…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16293A null pointer dereference vulnerability in compose_group_nonknockout_nonblend_isolated_allmask_common() in base/gxblend.c of Artifex Softw…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16292A buffer overflow vulnerability in mj_raster_cmd() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote atta…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16291A buffer overflow vulnerability in contrib/gdevdj9.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote attacker to cause a den…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16290A buffer overflow vulnerability in jetp3852_print_page() in devices/gdev3852.c of Artifex Software GhostScript v9.50 allows a remote attack…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16289A buffer overflow vulnerability in cif_print_page() in devices/gdevcif.c of Artifex Software GhostScript v9.50 allows a remote attacker to…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16288A buffer overflow vulnerability in pj_common_print_page() in devices/gdevpjet.c of Artifex Software GhostScript v9.50 allows a remote attac…
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16287ghostscript - security update
    from 0, < 9.51~dfsg-1
  • MEDIUM5.5CVE-2020-16287ghostscript - security update
    from 0, < 9.27~dfsg-2+deb10u4
  • MEDIUM5.5CVE-2020-16287ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb9u7
  • MEDIUM5.5CVE-2017-15652Artifex Ghostscript 9.22 is affected by: Obtain Information.
    from 0, < 9.25~dfsg-1
  • MEDIUM5.5CVE-2019-3838It was found that the forceput operator could be extracted from the DefineResource method in ghostscript before 9.27.
    from 0, < 9.27~dfsg-1
  • MEDIUM5.5CVE-2019-3835ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb9u2
  • MEDIUM5.5CVE-2019-3835ghostscript - security update
    from 0, < 9.26a~dfsg-0+deb8u2
  • MEDIUM5.5CVE-2019-3835ghostscript - security update
    from 0, < 9.27~dfsg-1
  • MEDIUM5.5CVE-2018-19478In Artifex Ghostscript before 9.26, a carefully crafted PDF file can trigger an extremely long running computation when parsing the file.
    from 0, < 9.26~dfsg-1
  • MEDIUM5.5CVE-2018-16542In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use insufficient interpreter stack-size checkin…
    from 0, < 9.22~dfsg-3
  • MEDIUM5.5CVE-2018-16541In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect free logic in pagedevice replacem…
    from 0, < 9.22~dfsg-3
  • MEDIUM5.5CVE-2018-16539In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect access checking in temp file hand…
    from 0, < 9.22~dfsg-3
  • MEDIUM5.5CVE-2016-7977Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently read arbitrary files vi…
    from 0, < 9.19~dfsg-3.1
  • MEDIUM5.5CVE-2017-8908The mark_line_tr function in gxscanc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds read…
    from 0, < 9.22~dfsg-1
  • MEDIUM5.5CVE-2017-5951The mem_get_bits_rectangle function in base/gdevmem.c in Artifex Software, Inc.
    from 0, < 9.20~dfsg-3.1
  • MEDIUM5.5CVE-2016-10220The gs_makewordimagedevice function in base/gsdevmem.c in Artifex Software, Inc.
    from 0, < 9.20~dfsg-3.1
  • MEDIUM5.5CVE-2016-10219ghostscript - security update
    from 0, < 9.05~dfsg-6.3+deb7u5
  • MEDIUM5.5CVE-2016-10219ghostscript - security update
    from 0, < 9.20~dfsg-3.1
  • MEDIUM5.5CVE-2016-10219ghostscript - security update
    from 0, < 9.06~dfsg-2+deb8u5
  • MEDIUM5.5CVE-2016-10217The pdf14_open function in base/gdevp14.c in Artifex Software, Inc.
    from 0, < 9.20~dfsg-3.1
  • MEDIUM5.5CVE-2017-7207The mem_get_bits_rectangle function in Artifex Software, Inc.
    from 0, < 9.20~dfsg-3
  • MEDIUM5.5CVE-2013-5653ghostscript - security update
    from 0, < 9.06~dfsg-2+deb8u3
  • MEDIUM5.5CVE-2013-5653ghostscript - security update
    from 0, < 9.19~dfsg-3.1
  • MEDIUM5.5CVE-2013-5653ghostscript - security update
    from 0, < 9.05~dfsg-6.3+deb7u3
  • MEDIUM5.4CVE-2024-29507Artifex Ghostscript before 10.03.0 sometimes has a stack-based buffer overflow via the CIDFSubstPath and CIDFSubstFont parameters.
    from 0, < 10.0.0~dfsg-11+deb12u5
  • MEDIUM5.3CVE-2024-33869An issue was discovered in Artifex Ghostscript before 10.03.1.
    from 0, < 9.53.3~dfsg-7+deb11u7
  • MEDIUM5.3CVE-2018-11645ghostscript - security update
    from 0, < 9.25~dfsg-0+deb9u1
  • MEDIUM5.3CVE-2018-11645ghostscript - security update
    from 0, < 9.21~dfsg-1
  • MEDIUM5.3CVE-2018-11645ghostscript - security update
    from 0, < 9.06~dfsg-2+deb8u8
  • MEDIUM4.5CVE-2025-46646In Artifex Ghostscript before 10.05.0, decode_utf8 in base/gp_utf8.c mishandles overlong UTF-8 encoding.
    from 0, < 10.05.0~dfsg-1
  • MEDIUM4.3CVE-2025-59801In Artifex GhostXPS before 10.06.0, there is a stack-based buffer overflow in xps_unpredict_tiff in xpstiff.c because the samplesperpixel v…
    from 0
  • LOW3.3CVE-2025-48708gs_lib_ctx_stash_sanitized_arg in base/gslibctx.c in Artifex Ghostscript before 10.05.1 lacks argument sanitization for the # case.
    from 0
  • LOW3.3CVE-2024-29508ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u8
  • LOW3.3CVE-2024-29508ghostscript - security update
    from 0, < 9.53.3~dfsg-7+deb11u8
  • CVE-2025-7462A vulnerability was found in Artifex GhostPDL up to 3989415a5b8e99b9d1b87cc9902bde9b7cdea145.
    from 0, < 9.53.3~dfsg-7+deb11u11
  • CVE-2015-3228ghostscript - security update
    from 0, < 9.05~dfsg-6.3+deb7u2
  • CVE-2015-3228ghostscript - security update
    from 0, < 9.15~dfsg-1
  • CVE-2015-3228ghostscript - security update
    from 0, < 8.71~dfsg2-9+squeeze2
  • CVE-2010-4820Untrusted search path vulnerability in Ghostscript 8.62 allows local users to execute arbitrary PostScript code via a Trojan horse Postscri…
    from 0, < 8.71~dfsg2-6.1
  • CVE-2012-4405ghostscript - buffer overflow
    from 0, < 9.05~dfsg-6.1
  • CVE-2012-4405ghostscript - buffer overflow
    from 0, < 8.71~dfsg2-9+squeeze1
  • CVE-2011-4517The jpc_crg_getparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 uses an incorrect data type during a certain size calculation, wh…
    from 0, < 8.64~dfsg-2
  • CVE-2011-4516jasper - buffer overflows
    from 0, < 8.64~dfsg-2
  • CVE-2010-4054The gs_type2_interpret function in Ghostscript allows remote attackers to cause a denial of service (incorrect pointer dereference and appl…
    from 0, < 8.71~dfsg-1
  • CVE-2009-3743Off-by-one error in the Ins_MINDEX function in the TrueType bytecode interpreter in Ghostscript before 8.71 allows remote attackers to exec…
    from 0, < 8.71~dfsg-1
  • CVE-2010-2055Ghostscript 8.71 and earlier reads initialization files from the current working directory, which allows local users to execute arbitrary P…
    from 0, < 8.71~dfsg2-6.1
  • CVE-2009-4897ghostscript - several vulnerabilities
    from 0, < 8.62.dfsg.1-3.2lenny5
  • CVE-2009-4897ghostscript - several vulnerabilities
    from 0, < 8.70~dfsg-1
  • CVE-2010-1628Ghostscript 8.64, 8.70, and possibly other versions allows context-dependent attackers to execute arbitrary code via a PostScript file cont…
    from 0, < 8.71~dfsg2-4
  • CVE-2010-1869Stack-based buffer overflow in the parser function in GhostScript 8.70 and 8.64 allows context-dependent attackers to execute arbitrary cod…
    from 0, < 8.71~dfsg-4
  • CVE-2009-4270Stack-based buffer overflow in the errprintf function in base/gsmisc.c in ghostscript 8.64 through 8.70 allows remote attackers to cause a…
    from 0, < 8.70~dfsg-2.1
  • CVE-2009-3560expat - regression fix
    from 0, < 8.71~dfsg-2
  • CVE-2009-3720expat - denial of service
    from 0, < 8.71~dfsg-2
  • CVE-2009-0196ghostscript - integer overflows
    from 0, < 8.64~dfsg-1+squeeze1
  • CVE-2009-0196ghostscript - integer overflows
    from 0, < 8.64~dfsg-1.1
  • CVE-2009-0792Multiple integer overflows in icc.c in the International Color Consortium (ICC) Format library (aka icclib), as used in Ghostscript 8.64 an…
    from 0, < 8.64~dfsg-1.1
  • CVE-2008-6679Buffer overflow in the BaseFont writer module in Ghostscript 8.62, and possibly other versions, allows remote attackers to cause a denial o…
    from 0, < 8.64~dfsg-1
  • CVE-2007-6725ghostscript - several vulnerabilities
    from 0, < 8.63.dfsg.1-1
  • CVE-2007-6725ghostscript - several vulnerabilities
    from 0, < 8.62.dfsg.1-3.2lenny4
  • CVE-2009-0584icc.c in the International Color Consortium (ICC) Format library (aka icclib), as used in Ghostscript 8.64 and earlier and Argyll Color Man…
    from 0, < 8.64~dfsg-1.1
  • CVE-2009-0583ghostscript gs-gpl - arbitrary code execution
    from 0, < 8.62.dfsg.1-3.2lenny1
  • CVE-2009-0583ghostscript gs-gpl - arbitrary code execution
    from 0, < 8.64~dfsg-1.1
  • CVE-2008-3522Buffer overflow in the jas_stream_printf function in libjasper/base/jas_stream.c in JasPer 1.900.1 might allow context-dependent attackers…
    from 0, < 8.64~dfsg-2
  • CVE-2008-3520Multiple integer overflows in JasPer 1.900.1 might allow context-dependent attackers to have an unknown impact via a crafted image file, re…
    from 0, < 8.64~dfsg-2
  • CVE-2008-0411gs-esp gs-gpl - arbitrary code execution
    from 0, < 8.61.dfsg.1-1.1
  • CVE-2007-2721jasper - denial of service
    from 0, < 8.61.dfsg.1~svn8187-1.1