CVE-2016-10317: Buffer Overflow
Last updated 25 August 2025
Other sources
The fillthreshholdbuffer function in base/gxhtthresh.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PostScript document.
— Launchpad
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-10317?
CVE-2016-10317 has a severity level that can lead to denial of service due to a heap-based buffer overflow.
How do I fix CVE-2016-10317?
To remediate CVE-2016-10317, update Ghostscript to versions 9.21 or higher as outlined in the vulnerability report.
What systems are affected by CVE-2016-10317?
CVE-2016-10317 affects Ghostscript version 9.20 and earlier on various Ubuntu and Debian systems.
What type of attacks does CVE-2016-10317 enable?
CVE-2016-10317 allows remote attackers to execute denial of service attacks through crafted PostScript documents.
Is CVE-2016-10317 still a risk for current systems?
Current systems using outdated versions of Ghostscript are at risk for exploitation through CVE-2016-10317.