CVE-2025-27832: Buffer Overflow
An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for contrib/japanese/gdevnpdl.c.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/ghostscriptto a version that resolves this vulnerability.Fixed in 10.0.0~dfsg-11+deb12u7Fixed in 10.05.0~dfsg-1 - Upgrade
Upgrade
Artifex Ghostscriptto a version that resolves this vulnerability.Fixed in 10.05.0
Event History
Frequently Asked Questions
What is the severity of CVE-2025-27832?
CVE-2025-27832 is considered a critical vulnerability due to its potential impact on system security through a buffer overflow.
How do I fix CVE-2025-27832?
To mitigate CVE-2025-27832, you should upgrade to Artifex Ghostscript version 10.05.0 or later.
What is affected by CVE-2025-27832?
CVE-2025-27832 affects all versions of Artifex Ghostscript prior to 10.05.0.
What type of vulnerability is CVE-2025-27832?
CVE-2025-27832 is a buffer overflow vulnerability found in the NPDL device of Artifex Ghostscript.
Is there a workaround for CVE-2025-27832?
There are no known workarounds for CVE-2025-27832; upgrading is the recommended action.