CVE-2025-59800: Integer Overflow
Published Sep 22, 2025
·Updated
In Artifex Ghostscript through 10.05.1, ocrbeginpage in devices/gdevpdfocr.c has an integer overflow that leads to a heap-based buffer overflow in ocrline8.
Affected Software
2 affected components
Artifex Ghostscript<=10.05.1
Artifex Ghostscript<=10.05.1
Remediation
Event History
Sep 22, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-59800?
CVE-2025-59800 is classified as a critical vulnerability due to its potential for causing a heap-based buffer overflow.
2
How do I fix CVE-2025-59800?
To fix CVE-2025-59800, update Artifex Ghostscript to version 10.05.2 or later.
3
What versions of Artifex Ghostscript are affected by CVE-2025-59800?
CVE-2025-59800 affects Artifex Ghostscript versions up to and including 10.05.1.
4
What is the impact of CVE-2025-59800?
The impact of CVE-2025-59800 is that it can lead to remote code execution through a heap-based buffer overflow.
5
Is there a workaround for CVE-2025-59800?
As a temporary measure, users can disable features that utilize the vulnerable ocr_begin_page function until a patch is applied.