Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2627▼ 298 respecto a la semana anterior
Críticas / altas1348▲ 77 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)64▼ 463 respecto a la semana anterior
–

170 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (7.8)2.1%—Artifex Ghostscript Ghostxps26/7/201717/6/2026
The xps_load_sfnt_name function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted document.
ModificadaAlta (7.8)2.5%—Artifex Ghostscript GhostxpsDebian Linux26/7/201717/6/2026
The Ins_IP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly have unspecified other impact via a crafted document.
ModificadaAlta (7.8)2.0%—Artifex GhostscriptDebian Linux26/7/201717/6/2026
The Ins_MIRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted document.
ModificadaAlta (7.8)1.8%—Artifex Ghostscript Ghostxps26/7/201717/6/2026
The xps_load_sfnt_name function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted document.
ModificadaCrítica (9.8)6.4%—Artifex Ghostscript23/5/201717/6/2026
Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently execute arbitrary code by leveraging type confusion in .initialize_dsc_parser.
ModificadaCrítica (9.8)5.5%—Artifex Ghostscript23/5/201717/6/2026
Use-after-free vulnerability in Ghostscript 9.20 might allow remote attackers to execute arbitrary code via vectors related to a reference leak in .setdevice.
ModificadaMedia (5.5)4.6%—Artifex Ghostscript23/5/201717/6/2026
Ghostscript before 9.21 might allow remote attackers to bypass the SAFER mode protection mechanism and consequently read arbitrary files via the use of the .libfile operator in a crafted postscript document.
ModificadaMedia (5.5)1.1%—Artifex Ghostscript12/5/201717/6/2026
The mark_line_tr function in gxscanc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PostScript document.
AnalizadaAlta (7.8)97%⚠ Explotación activaArtifex GhostscriptDebian LinuxRedhat Enterprise Linux DesktopRedhat Enterprise Linux EUS+427/4/201717/6/2026
Artifex Ghostscript through 2017-04-26 allows -dSAFER bypass and remote command execution via .rsdparams type confusion with a "/OutputFile (%pipe%" substring in a crafted .eps document that is an input to the gs program, as exploited in the wild in April 2017.
ModificadaAlta (7.8)1.6%—Artifex Ghostscript19/4/201717/6/2026
Integer overflow in the mark_curve function in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly have unspecified other impact via a crafted PostScript document.
ModificadaAlta (7.8)3.2%—Artifex Ghostscript14/4/201717/6/2026
The .sethalftone5 function in psi/zht2.c in Ghostscript before 9.21 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted Postscript document that calls .sethalftone5 with an empty operand stack.
ModificadaAlta (7.8)2.3%—Artifex Ghostscript3/4/201717/6/2026
The fill_threshhold_buffer function in base/gxht_thresh.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PostScript document.
ModificadaMedia (5.5)1.9%—Artifex Ghostscript3/4/201717/6/2026
The mem_get_bits_rectangle function in base/gdevmem.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file.
ModificadaMedia (5.5)1.9%—Artifex Ghostscript3/4/201717/6/2026
The gs_makewordimagedevice function in base/gsdevmem.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file that is mishandled in the PDF Transparency module.
ModificadaMedia (5.5)1.9%—Artifex Ghostscript3/4/201717/6/2026
The intersect function in base/gxfill.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted file.
ModificadaMedia (5.5)1.3%—Artifex Ghostscript3/4/201717/6/2026
The pdf14_pop_transparency_group function in base/gdevp14.c in the PDF Transparency module in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file.
ModificadaMedia (5.5)1.5%—Artifex Ghostscript3/4/201717/6/2026
The pdf14_open function in base/gdevp14.c in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted file that is mishandled in the color management module.
ModificadaMedia (5.5)2.3%—Artifex Ghostscript21/3/201717/6/2026
The mem_get_bits_rectangle function in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted PostScript document.
ModificadaMedia (5.5)2.0%—Artifex Afpl GhostscriptDebian Linux7/3/201716/6/2026
The getenv and filenameforall functions in Ghostscript 9.10 ignore the "-dSAFER" argument, which allows remote attackers to read data via a crafted postscript file.
ModificadaAlta (7.8)1.8%—Artifex Afpl Ghostscript24/2/201717/6/2026
Multiple use-after-free vulnerabilities in the gx_image_enum_begin function in base/gxipixel.c in Ghostscript before ecceafe3abba2714ef9b432035fe0739d9b1a283 allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PostScript document.
ModificadaMedia (6.8)3.9%—Artifex Afpl Ghostscript11/8/201517/6/2026
Integer overflow in the gs_heap_alloc_bytes function in base/gsmalloc.c in Ghostscript 9.15 and earlier allows remote attackers to cause a denial of service (crash) via a crafted Postscript (ps) file, as demonstrated by using the ps2pdf command, which triggers an out-of-bounds read or write.
ModificadaMedia (4.4)0.47%—Ghostscript27/10/201416/6/2026
Untrusted search path vulnerability in Ghostscript 8.62 allows local users to execute arbitrary PostScript code via a Trojan horse Postscript library file in Encoding/ under the current working directory, a different vulnerability than CVE-2010-2055.
ModificadaMedia (5)9.7%—Google ChromeOracle SolarisArtifex GPL GhostscriptLibjpeg-turbo+719/11/201317/6/2026
The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48, Ghostscript, and other products, does not check for certain duplications of component data during the reading of segments that follow Start Of Scan (SOS) JPEG markers, which allows…
ModificadaMedia (6.8)7.5%—Argyllcms CMSColor IcclibGhostscript18/9/201216/6/2026
Multiple integer underflows in the icmLut_allocate function in International Color Consortium (ICC) Format library (icclib), as used in Ghostscript 9.06 and Argyll Color Management System, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted (1) PostScript or…
ModificadaAlta (9.3)4.3%—Artifex GPL Ghostscript6/9/201216/6/2026
Heap-based buffer overflow in gdevwpr2.c in Ghostscript 9.04, when processing the OutputFile device parameter, allows user-assisted remote attackers to execute arbitrary code via a long file name in a PostScript document. NOTE: as of 20120314, the developer was not able to reproduce the issue and disputed it