CVE-2025-27830: Buffer Overflow
An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs during serialization of DollarBlend in a font, for base/writet1.c and psi/zfapi.c.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/ghostscriptto a version that resolves this vulnerability.Fixed in 10.0.0~dfsg-11+deb12u7Fixed in 10.05.0~dfsg-1 - Upgrade
Upgrade
Artifex Ghostscriptto a version that resolves this vulnerability.Fixed in 10.05.0
Event History
Frequently Asked Questions
What is the severity of CVE-2025-27830?
CVE-2025-27830 has a high severity level due to the potential for buffer overflow vulnerabilities.
How do I fix CVE-2025-27830?
To fix CVE-2025-27830, upgrade to Ghostscript version 10.05.0 or later.
What software is affected by CVE-2025-27830?
CVE-2025-27830 affects versions of Artifex Ghostscript prior to 10.05.0.
What type of vulnerability is CVE-2025-27830?
CVE-2025-27830 is a buffer overflow vulnerability triggered during font serialization.
When was CVE-2025-27830 last updated?
CVE-2025-27830 was last updated on March 26, 2025.