CVE-2025-59801: Buffer Overflow
Published Sep 22, 2025
·Updated
In Artifex GhostXPS before 10.06.0, there is a stack-based buffer overflow in xpsunpredicttiff in xpstiff.c because the samplesperpixel value is not checked.
Affected Software
1 affected component
Artifex GhostXPS<10.06.0
Event History
Sep 22, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-59801?
CVE-2025-59801 is classified as a high severity vulnerability due to the potential for stack-based buffer overflow.
2
How do I fix CVE-2025-59801?
To fix CVE-2025-59801, you should update Artifex GhostXPS to version 10.06.0 or later.
3
What does CVE-2025-59801 affect?
CVE-2025-59801 affects versions of Artifex GhostXPS prior to 10.06.0.
4
What is the cause of CVE-2025-59801?
CVE-2025-59801 is caused by a lack of validation for the samplesperpixel value in the xps_unpredict_tiff function.
5
Is CVE-2025-59801 exploitable?
Yes, CVE-2025-59801 is exploitable, potentially allowing attackers to execute arbitrary code through crafted TIFF images.