Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2627▼ 298 respecto a la semana anterior
Críticas / altas1348▲ 77 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 463 respecto a la semana anterior
170 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.8) | 2.1% | — | Artifex Ghostscript Ghostxps | 26/7/2017 | 17/6/2026 | The xps_load_sfnt_name function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted document. | |
| Modificada | Alta (7.8) | 2.5% | — | Artifex Ghostscript GhostxpsDebian Linux | 26/7/2017 | 17/6/2026 | The Ins_IP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly have unspecified other impact via a crafted document. | |
| Modificada | Alta (7.8) | 2.0% | — | Artifex GhostscriptDebian Linux | 26/7/2017 | 17/6/2026 | The Ins_MIRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted document. | |
| Modificada | Alta (7.8) | 1.8% | — | Artifex Ghostscript Ghostxps | 26/7/2017 | 17/6/2026 | The xps_load_sfnt_name function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted document. | |
| Modificada | Crítica (9.8) | 6.4% | — | Artifex Ghostscript | 23/5/2017 | 17/6/2026 | Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently execute arbitrary code by leveraging type confusion in .initialize_dsc_parser. | |
| Modificada | Crítica (9.8) | 5.5% | — | Artifex Ghostscript | 23/5/2017 | 17/6/2026 | Use-after-free vulnerability in Ghostscript 9.20 might allow remote attackers to execute arbitrary code via vectors related to a reference leak in .setdevice. | |
| Modificada | Media (5.5) | 4.6% | — | Artifex Ghostscript | 23/5/2017 | 17/6/2026 | Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently read arbitrary files via the use of the .libfile operator in a crafted postscript document. | |
| Modificada | Media (5.5) | 1.1% | — | Artifex Ghostscript | 12/5/2017 | 17/6/2026 | The mark_line_tr function in gxscanc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PostScript document. | |
| Analizada | Alta (7.8) | 97% | ⚠ Explotación activa | Artifex GhostscriptDebian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux EUS+4 | 27/4/2017 | 17/6/2026 | Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and remote command execution via .rsdparams type confusion with a "/OutputFile (%pipe%" substring in a crafted .eps document that is an input to the gs program, as exploited in the wild in April 2017. | |
| Modificada | Alta (7.8) | 1.6% | — | Artifex Ghostscript | 19/4/2017 | 17/6/2026 | Integer overflow in the mark_curve function in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly have unspecified other impact via a crafted PostScript document. | |
| Modificada | Alta (7.8) | 3.2% | — | Artifex Ghostscript | 14/4/2017 | 17/6/2026 | The .sethalftone5 function in psi/zht2.c in Ghostscript before 9.21 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Postscript document that calls .sethalftone5 with an empty operand stack. | |
| Modificada | Alta (7.8) | 2.3% | — | Artifex Ghostscript | 3/4/2017 | 17/6/2026 | The fill_threshhold_buffer function in base/gxht_thresh.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PostScript document. | |
| Modificada | Media (5.5) | 1.9% | — | Artifex Ghostscript | 3/4/2017 | 17/6/2026 | The mem_get_bits_rectangle function in base/gdevmem.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file. | |
| Modificada | Media (5.5) | 1.9% | — | Artifex Ghostscript | 3/4/2017 | 17/6/2026 | The gs_makewordimagedevice function in base/gsdevmem.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file that is mishandled in the PDF Transparency module. | |
| Modificada | Media (5.5) | 1.9% | — | Artifex Ghostscript | 3/4/2017 | 17/6/2026 | The intersect function in base/gxfill.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted file. | |
| Modificada | Media (5.5) | 1.3% | — | Artifex Ghostscript | 3/4/2017 | 17/6/2026 | The pdf14_pop_transparency_group function in base/gdevp14.c in the PDF Transparency module in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file. | |
| Modificada | Media (5.5) | 1.5% | — | Artifex Ghostscript | 3/4/2017 | 17/6/2026 | The pdf14_open function in base/gdevp14.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted file that is mishandled in the color management module. | |
| Modificada | Media (5.5) | 2.3% | — | Artifex Ghostscript | 21/3/2017 | 17/6/2026 | The mem_get_bits_rectangle function in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted PostScript document. | |
| Modificada | Media (5.5) | 2.0% | — | Artifex Afpl GhostscriptDebian Linux | 7/3/2017 | 16/6/2026 | The getenv and filenameforall functions in Ghostscript 9.10 ignore the "-dSAFER" argument, which allows remote attackers to read data via a crafted postscript file. | |
| Modificada | Alta (7.8) | 1.8% | — | Artifex Afpl Ghostscript | 24/2/2017 | 17/6/2026 | Multiple use-after-free vulnerabilities in the gx_image_enum_begin function in base/gxipixel.c in Ghostscript before ecceafe3abba2714ef9b432035fe0739d9b1a283 allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PostScript document. | |
| Modificada | Media (6.8) | 3.9% | — | Artifex Afpl Ghostscript | 11/8/2015 | 17/6/2026 | Integer overflow in the gs_heap_alloc_bytes function in base/gsmalloc.c in Ghostscript 9.15 and earlier allows remote attackers to cause a denial of service (crash) via a crafted Postscript (ps) file, as demonstrated by using the ps2pdf command, which triggers an out-of-bounds read or write. | |
| Modificada | Media (4.4) | 0.47% | — | Ghostscript | 27/10/2014 | 16/6/2026 | Untrusted search path vulnerability in Ghostscript 8.62 allows local users to execute arbitrary PostScript code via a Trojan horse Postscript library file in Encoding/ under the current working directory, a different vulnerability than CVE-2010-2055. | |
| Modificada | Media (5) | 9.7% | — | Google ChromeOracle SolarisArtifex GPL GhostscriptLibjpeg-turbo+7 | 19/11/2013 | 17/6/2026 | The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48, Ghostscript, and other products, does not check for certain duplications of component data during the reading of segments that follow Start Of Scan (SOS) JPEG markers, which allows… | |
| Modificada | Media (6.8) | 7.5% | — | Argyllcms CMSColor IcclibGhostscript | 18/9/2012 | 16/6/2026 | Multiple integer underflows in the icmLut_allocate function in International Color Consortium (ICC) Format library (icclib), as used in Ghostscript 9.06 and Argyll Color Management System, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) PostScript or… | |
| Modificada | Alta (9.3) | 4.3% | — | Artifex GPL Ghostscript | 6/9/2012 | 16/6/2026 | Heap-based buffer overflow in gdevwpr2.c in Ghostscript 9.04, when processing the OutputFile device parameter, allows user-assisted remote attackers to execute arbitrary code via a long file name in a PostScript document. NOTE: as of 20120314, the developer was not able to reproduce the issue and disputed it |