Integer overflow in the gs_heap_alloc_bytes function in base/gsmalloc.c in Ghostscript 9.15 and earlier allows remote attackers to cause a denial of service (crash) via a crafted Postscript (ps) file, as demonstrated by using the ps2pdf command, which triggers an out-of-bounds read or write.
CVSS Details
- CVSS 3.1 Base Score: 7.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade ghostscript | Aug 30, 2017 | Aug 11, 2015 |
| Debian | — | Upgrade ghostscript | Jul 30, 2024 | Aug 11, 2015 |
| Freebsd | — | Upgrade ghostscript8-baseUpgrade ghostscript9-agpl-baseUpgrade ghostscript9Upgrade ghostscript7-nox11Upgrade ghostscript9-x11Upgrade ghostscript7Upgrade ghostscript9-agplUpgrade ghostscript7-baseUpgrade ghostscript8Upgrade ghostscript8-x11Upgrade ghostscript9-agpl-nox11Upgrade ghostscript9-agpl-x11Upgrade ghostscript8-nox11Upgrade ghostscript7-x11Upgrade ghostscript9-baseUpgrade ghostscript9-nox11 | Dec 10, 2025 | Sep 1, 2015 |
| Gentoo Linux | — | Upgrade app-text/ghostscript-gpl. | Oct 30, 2017 | Aug 11, 2015 |
| Oracle Solaris | — | Upgrade print/filter/ghostscript to version 9.0-0.175.3.11.0.5.0 on Solaris 11.3 | May 29, 2017 | Aug 11, 2015 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jul 23, 2015 |
| Suse | — | Upgrade libgimpprint-develUpgrade ghostscriptUpgrade ghostscript-x11Upgrade libgimpprintUpgrade ghostscript-fonts-rusUpgrade ghostscript-libraryUpgrade ghostscript-fonts-stdUpgrade ghostscript-omniUpgrade ghostscript-fonts-otherUpgrade ghostscript-develUpgrade ghostscript-ijs-devel | Dec 18, 2015 | Aug 11, 2015 |
| Ubuntu | — | Upgrade libgs9 | Nov 8, 2024 | Aug 11, 2015 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub