Buffer overflow in the BaseFont writer module in Ghostscript 8.62, and possibly other versions, allows remote attackers to cause a denial of service (ps2pdf crash) and possibly execute arbitrary code via a crafted Postscript file.
CVSS Details
- CVSS 3.1 Base Score: 5.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade ghostscript-gtkUpgrade ghostscript-develUpgrade ghostscript | Dec 1, 2016 | Apr 8, 2009 |
| Debian | — | Upgrade ghostscript | Jul 30, 2024 | Apr 8, 2009 |
| Freebsd | — | Upgrade ghostscript8-nox11Upgrade ghostscript8 | Dec 10, 2025 | May 13, 2009 |
| Oracle_linux | — | Upgrade ghostscriptUpgrade ghostscript-develUpgrade ghostscript-gtk | Oct 16, 2024 | Apr 8, 2009 |
| Suse | — | Upgrade ghostscript-omniUpgrade libgimpprintUpgrade ghostscript-libraryUpgrade ghostscript-fonts-rusUpgrade ghostscript-fonts-stdUpgrade ghostscript-fonts-otherUpgrade ghostscript-x11 | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade gs-espUpgrade libgs8Upgrade gs-gpl | Nov 8, 2024 | Apr 8, 2009 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub