yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2025-59799
Component Overview
Vulnerability Overview
Name
CVE-2025-59799
Source
NVD (
link
)
Debian (
link
)
Description
Artifex Ghostscript through 10.05.1 has a stack-based buffer overflow in pdfmark_coerce_dest in devices/vector/gdevpdfm.c via a large size value.
CWEs
CWE-121
Published Date
Sep 22, 2025
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://bugs.ghostscript.com/show_bug.cgi?id=708517
Issue Tracking
https://cgit.ghostscript.com/cgi-bin/cgit.cgi/ghostpdl.git/commit/?id=6dab38fb211f15226c242ab7a83fa53e4b0ff781
Patch
https://bugs.ghostscript.com/show_bug.cgi?id=708517
Issue Tracking
Analysis
#
Affected Component
Analysis
ghostscript
Patched
Vulnerability Ratings
#
4.3
CVSSv31
5.5
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
ghostscript
buildroot
2025.02.x
10.07.0
Not Affected
ghostscript
buildroot
master
10.07.0
Not Affected
ghostscript
yocto
master
10.07.1
Not Affected
ghostscript
yocto
scarthgap
10.05.1
Patched
Resolved with patches
#
ghostscript (yocto:kirkstone)
#
Title
Author
Resolve
1
pdfwrite - bounds check some strings
Piotr Kajda <petermasterperfect@gmail.com>
CVE-2025-59799
ghostscript (yocto:scarthgap)
#
Title
Author
Resolve
1
pdfwrite - bounds check some strings
Piotr Kajda <petermasterperfect@gmail.com>
CVE-2025-59799