CVE-2025-27835

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 25, 2025
Updated: Apr 1, 2025
CWE ID 120

Summary

CVE-2025-27835 is a newly identified vulnerability affecting Artifex Ghostscript before version 10.05.0. This issue stems from a buffer overflow problem in the psi/zbfont.c file. Specifically, an error occurs during the process of converting glyphs to Unicode, resulting in excess data being written to a buffer, potentially leading to unintended code execution or system crashes. It is recommended that users update to the latest version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share