Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2778▼ 418 respecto a la semana anterior
Críticas / altas1332▼ 108 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
–

367 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (5.5)1.9%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in okiibm_print_page1() in devices/gdevokii.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)2.0%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in tiff12_print_page() in devices/gdevtfnx.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)1.8%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A Division by Zero vulnerability in bj10v_print_page() in contrib/japanese/gdev10v.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)2.0%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in mj_color_correct() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
AnalizadaMedia (5.5)2.3%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in FloydSteinbergDitheringC() in contrib/gdevbjca.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)2.1%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in GetNumWrongData() in contrib/lips4/gdevlips.c of Artifex Software GhostScript from v9.18 to v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)1.8%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A null pointer dereference vulnerability in clj_media_size() in devices/gdevclj.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)1.9%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in epsc_print_page() in devices/gdevepsc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)1.8%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A null pointer dereference vulnerability in compose_group_nonknockout_nonblend_isolated_allmask_common() in base/gxblend.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)2.0%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in mj_raster_cmd() in contrib/japanese/gdevmjc.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
AnalizadaMedia (5.5)2.3%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in contrib/gdevdj9.c of Artifex Software GhostScript v9.18 to v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)2.0%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in jetp3852_print_page() in devices/gdev3852.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)2.0%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in cif_print_page() in devices/gdevcif.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)2.0%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in pj_common_print_page() in devices/gdevpjet.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaMedia (5.5)1.9%—Artifex GhostscriptDebian LinuxCanonical Ubuntu Linux13/8/202017/6/2026
A buffer overflow vulnerability in lprn_is_black() in contrib/lips4/gdevlprn.c of Artifex Software GhostScript v9.50 allows a remote attacker to cause a denial of service via a crafted PDF file. This is fixed in v9.51.
ModificadaCrítica (9.8)5.2%—Artifex GhostscriptCanonical Ubuntu LinuxOpensuse Leap28/7/202017/6/2026
A memory corruption issue was found in Artifex Ghostscript 9.50 and 9.52. Use of a non-standard PostScript operator can allow overriding of file access controls. The 'rsearch' calculation for the 'post' size resulted in a size that was too large, and could underflow to max uint32_t. This was fixed in commit…
ModificadaAlta (8.1)1.2%—Ghost20/3/202017/6/2026
Server-side request forgery (SSRF) vulnerability in Ghost CMS < 3.10.0 allows an attacker to scan local or external network or otherwise interact with internal systems.
ModificadaAlta (7.8)0.32%—Symantec Encryption DesktopSymantec Endpoint EncryptionSymantec Ghost Solution SuiteSymantec IT Management Suite8/1/202017/6/2026
A privilege escalation vulnerability exists when loading DLLs during boot up and reboot in Symantec IT Management Suite 8.0 prior to 8.0 HF4 and Suite 7.6 prior to 7.6 HF7, Symantec Ghost Solution Suite 3.1 prior to 3.1 MP4, Symantec Endpoint Virtualization 7.x prior to 7.6 HF7, and Symantec Encryption Desktop 10.x…
ModificadaAlta (7.8)2.5%—Artifex GhostscriptFedoraproject Fedora27/11/201917/6/2026
A flaw was found in all ghostscript versions 9.x before 9.50, in the .setuserparams2 procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or…
ModificadaAlta (7.8)2.3%—Artifex GhostscriptRedhat 3scale API ManagementRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+527/11/201917/6/2026
In ghostscript before version 9.50, the .buildfont1 procedure did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges and access files outside of restricted areas.
ModificadaAlta (8.8)3.4%—Artifex GhostscriptFedoraproject FedoraOpensuse Leap15/11/201917/6/2026
A flaw was found in all versions of ghostscript 9.x before 9.50, where the `.charkeys` procedure, where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. An attacker could abuse this flaw by creating a specially crafted PostScript file that could escalate privileges…
ModificadaMedia (6.5)1.5%—Ghost17/9/201917/6/2026
The ghost plugin before 0.5.6 for WordPress has no access control for wp-admin/tools.php?ghostexport=true downloads of exported data.
ModificadaCrítica (9.8)11%—Artifex GhostscriptRedhat Openshift Container PlatformRedhat Enterprise LinuxRedhat Enterprise Linux Desktop+86/9/201917/6/2026
A flaw was found in ghostscript, versions 9.x before 9.50, in the setsystemparams procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or execute…
ModificadaAlta (7.8)2.0%—Artifex GhostscriptRedhat Openshift Container PlatformOpensuse LeapFedoraproject Fedora+13/9/201917/6/2026
A flaw was found in, ghostscript versions prior to 9.50, in the .pdfexectoken and other procedures where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or…
ModificadaAlta (7.8)3.7%💥 PoCArtifex GhostscriptRedhat Openshift Container PlatformFedoraproject FedoraOpensuse Leap+13/9/201917/6/2026
A flaw was found in, ghostscript versions prior to 9.50, in the .pdf_hook_DSC_Creator procedure where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restrictions. A specially crafted PostScript file could disable security protection and then have access to the file system, or…
Orbitaley — Vulnerabilidades