Stack-based Buffer Overflow in Artifex Ghostscript
CVE-2025-59799

4.3MEDIUM

Key Information:

Vendor

Artifex

Vendor
CVE Published:
22 September 2025

What is CVE-2025-59799?

Artifex Ghostscript version 10.05.1 contains a stack-based buffer overflow vulnerability located in the pdfmark_coerce_dest function, situated in the devices/vector/gdevpdfm.c file. This vulnerability may be exploited through a specially crafted PDF file that includes a large size value, potentially leading to unexpected program behavior or execution of arbitrary code. Users of affected versions are advised to update to the latest releases to mitigate this security risk.

Affected Version(s)

Ghostscript 0 <= 10.05.1

References

CVSS V3.1

Score:
4.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-59799 : Stack-based Buffer Overflow in Artifex Ghostscript