Vulnerability index

Browse CVEs

131 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2025-71382 MuPDF before 1.27.0-rc1 contains an uncontrolled recursion vulnerability in the EPUB CSS rendering engine that allows remote attackers to cause a den… Mupdf 1.27.0+ Fix from $1,6002026-06-23 MEDIUM 6.1 CVE-2026-7233 A vulnerability was determined in Artifex MuPDF up to 1.28.0. The impacted element is the function fz_subset_cff_for_gids of the file subset-cff.c of… Mupdf after 1.27.2 Fix from $1,6002026-04-28 HIGH 7.5 CVE-2026-25556 MuPDF versions 1.23.0 through 1.27.0 contain a double-free vulnerability in fz_fill_pixmap_from_display_list() when an exception occurs during displa… Mupdf after 1.27.0 Fix from $1,9502026-02-06 HIGH 7.5 CVE-2025-55780 A null pointer dereference occurs in the function break_word_for_overflow_wrap() in MuPDF 1.26.4 when rendering a malformed EPUB document. Specifical… Mupdf 1.26.7+ Fix from $1,9502025-09-23 MEDIUM 5.5 CVE-2025-59799 Artifex Ghostscript through 10.05.1 has a stack-based buffer overflow in pdfmark_coerce_dest in devices/vector/gdevpdfm.c via a large size value. Ghostscript after 10.05.1 Fix from $1,6002025-09-22 MEDIUM 5.5 CVE-2025-59800 In Artifex Ghostscript through 10.05.1, ocr_begin_page in devices/gdevpdfocr.c has an integer overflow that leads to a heap-based buffer overflow in … Ghostscript after 10.05.1 Fix from $1,6002025-09-22 MEDIUM 5.5 CVE-2025-59798 Artifex Ghostscript through 10.05.1 has a stack-based buffer overflow in pdf_write_cmap in devices/vector/gdevpdtw.c. Ghostscript after 10.05.1 Fix from $1,6002025-09-22 MEDIUM 6.5 CVE-2025-46206 An issue in Artifex mupdf 1.25.6, 1.25.5 allows a remote attacker to cause a denial of service via an infinite recursion in the `mutool clean` utilit… Mupdf after 1.25.6 Fix from $1,6002025-08-04 CRITICAL 9.8 CVE-2025-27836 An issue was discovered in Artifex Ghostscript before 10.05.0. The BJ10V device has a Print buffer overflow in contrib/japanese/gdev10v.c. Ghostscript 10.05.0+ Fix from $2,3002025-03-25 CRITICAL 9.8 CVE-2025-27837 An issue was discovered in Artifex Ghostscript before 10.05.0. Access to arbitrary files can occur through a truncated path with invalid UTF-8 charac… Ghostscript 10.05.0+ Fix from $2,3002025-03-25 HIGH 7.8 CVE-2025-27835 An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs when converting glyphs to Unicode in psi/zbfont.c. Ghostscript 10.05.0+ Fix from $1,9502025-03-25 CRITICAL 9.8 CVE-2025-27831 An issue was discovered in Artifex Ghostscript before 10.05.0. The DOCXWRITE TXTWRITE device has a text buffer overflow via long characters to device… Ghostscript 10.05.0+ Fix from $2,3002025-03-25 CRITICAL 9.8 CVE-2025-27832 An issue was discovered in Artifex Ghostscript before 10.05.0. The NPDL device has a Compression buffer overflow for contrib/japanese/gdevnpdl.c. Ghostscript 10.05.0+ Fix from $2,3002025-03-25 HIGH 7.8 CVE-2025-27830 An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs during serialization of DollarBlend in a font, for base/write… Ghostscript 10.05.0+ Fix from $1,9502025-03-25 HIGH 7.8 CVE-2025-27833 An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs for a long TTF font name to pdf/pdf_fmap.c. Ghostscript 10.05.0+ Fix from $1,9502025-03-25 HIGH 7.8 CVE-2025-27834 An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs via an oversized Type 4 function in a PDF document to pdf/pdf… Ghostscript 10.05.0+ Fix from $1,9502025-03-25 MEDIUM 5.5 CVE-2024-46657 Artifex Software mupdf v1.24.9 was discovered to contain a segmentation fault via the component /tools/pdfextract.c. This vulnerability allows attack… Mupdf Patch available Fix from $1,6002024-12-10 HIGH 7.8 CVE-2024-46954 An issue was discovered in decode_utf8 in base/gp_utf8.c in Artifex Ghostscript before 10.04.0. Overlong UTF-8 encoding leads to possible ../ directo… Ghostscript 10.04.0+ Fix from $1,9502024-11-10 HIGH 8.8 CVE-2024-33871 An issue was discovered in Artifex Ghostscript before 10.03.1. contrib/opvp/gdevopvp.c allows arbitrary code execution via a custom Driver library, e… Ghostscript 10.03.1+ Fix from $1,9502024-07-03 HIGH 7.5 CVE-2024-29511 Artifex Ghostscript before 10.03.1, when Tesseract is used for OCR, has a directory traversal issue that allows arbitrary file reading (and writing o… Ghostscript 10.03.1+ Fix from $1,9502024-07-03 MEDIUM 6.3 CVE-2024-29510EPSS 28% Artifex Ghostscript before 10.03.1 allows memory corruption, and SAFER sandbox bypass, via format string injection with a uniprint device. Ghostscript 10.03.1+ Fix from $1,6002024-07-03 MEDIUM 6.3 CVE-2024-33870 An issue was discovered in Artifex Ghostscript before 10.03.1. There is path traversal (via a crafted PostScript document) to arbitrary files if the … Ghostscript 10.03.1+ Fix from $1,6002024-07-03 MEDIUM 5.4 CVE-2024-29507 Artifex Ghostscript before 10.03.0 sometimes has a stack-based buffer overflow via the CIDFSubstPath and CIDFSubstFont parameters. Ghostscript 10.03.0+ Fix from $1,6002024-07-03 MEDIUM 5.3 CVE-2024-33869 An issue was discovered in Artifex Ghostscript before 10.03.1. Path traversal and command execution can occur (via a crafted PostScript document) bec… Ghostscript 10.03.1+ Fix from $1,6002024-07-03 HIGH 8.8 CVE-2024-29506 Artifex Ghostscript before 10.03.0 has a stack-based buffer overflow in the pdfi_apply_filter() function via a long PDF filter name. Ghostscript 10.03.0+ Fix from $1,9502024-07-03 HIGH 8.8 CVE-2024-29509 Artifex Ghostscript before 10.03.0 has a heap-based overflow when PDFPassword (e.g., for runpdf) has a \000 byte in the middle. Ghostscript 10.03.0+ Fix from $1,9502024-07-03 MEDIUM 5.5 CVE-2023-52722 An issue was discovered in Artifex Ghostscript before 10.03.1. psi/zmisc1.c, when SAFER mode is used, allows eexec seeds other than the Type 1 standa… Ghostscript 10.03.1+ Fix from $1,6002024-04-28 HIGH 7.5 CVE-2024-24258 freeglut 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddSubMenu function. Mupdf Patch available Fix from $1,9502024-02-05 HIGH 7.5 CVE-2024-24259 freeglut through 3.4.0 was discovered to contain a memory leak via the menuEntry variable in the glutAddMenuEntry function. Mupdf Patch available Fix from $1,9502024-02-05 CRITICAL 9.8 CVE-2020-36773 Artifex Ghostscript before 9.53.0 has an out-of-bounds write and use-after-free in devices/vector/gdevtxtw.c (for txtwrite) because a single characte… Ghostscript Patch available Fix from $2,3002024-02-04