CVE-2025-27833: Buffer Overflow
An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs for a long TTF font name to pdf/pdffmap.c.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/ghostscriptto a version that resolves this vulnerability.Fixed in 10.0.0~dfsg-11+deb12u7Fixed in 10.05.0~dfsg-1 - Upgrade
Upgrade
Artifex Ghostscriptto a version that resolves this vulnerability.Fixed in 10.05.0
Event History
Frequently Asked Questions
What is the severity of CVE-2025-27833?
CVE-2025-27833 is classified as a high-severity vulnerability due to its buffer overflow risk.
How do I fix CVE-2025-27833?
To fix CVE-2025-27833, update to Artifex Ghostscript version 10.05.0 or later.
Which software versions are affected by CVE-2025-27833?
CVE-2025-27833 affects all versions of Artifex Ghostscript prior to 10.05.0.
Is CVE-2025-27833 exploitable remotely?
Yes, CVE-2025-27833 can potentially be exploited remotely if the vulnerable software processes untrusted input.
What are the potential impacts of CVE-2025-27833?
The potential impacts of CVE-2025-27833 include arbitrary code execution, leading to system compromise.