Artifex GhostPDL har 3989415a5b8e99b9d1b87cc9902bde9b7cdea145 New Output File Open Error devices/vector/gdevpdf.c pdf_ferror Kari na aiki
| CVSS Meta Temp Score | Garga na exploit ndiyam (≈) | CTI Nganji Score |
|---|---|---|
| 4.2 | $0-$5k | 0.20 |
Gunduma
Gaskiya vulnerability da aka ware a matsayin karshewa an samu a Artifex GhostPDL har 3989415a5b8e99b9d1b87cc9902bde9b7cdea145. Hakika, aikin pdf_ferror ne ya shafa; idan ba a bayyana ba, to aiki ce da ba a sani ba, a cikin laburaren $software_library, a cikin fayil devices/vector/gdevpdf.c, a cikin sashen New Output File Open Error Handler. A sa manipulation ka Kari na aiki. Wannan matsala ana saninta da CVE-2025-7462. Ngam yiɗi ka a tuma ndiyam ka nder layi. Babu exploit ɗin da ake samu. Ana shawartar a saka patch domin warware wannan matsala. Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.
Furɗe
Gaskiya vulnerability da aka ware a matsayin karshewa an samu a Artifex GhostPDL har 3989415a5b8e99b9d1b87cc9902bde9b7cdea145. Hakika, aikin pdf_ferror ne ya shafa; idan ba a bayyana ba, to aiki ce da ba a sani ba, a cikin laburaren $software_library, a cikin fayil devices/vector/gdevpdf.c, a cikin sashen New Output File Open Error Handler. A sa manipulation ka Kari na aiki. Idan an yi amfani da CWE don bayyana matsala, zai kai CWE-476. Hakika, rauni an bayyana shi kamar 619a106ba4c4. An raba bayanin tsaro don saukewa a cgit.ghostscript.com.
Wannan matsala ana saninta da CVE-2025-7462. Ngam yiɗi ka a tuma ndiyam ka nder layi. Tekinikal faɗi ga. Shaharar wannan vulnerability ɗin ƙasa da matsakaici ne. Babu exploit ɗin da ake samu. Yimbe ndiyam, exploit might be approx. USD $0-$5k wuro.
Á sàmbu a wondi feere. Ana bayar da Nessus plugin mai lamba 243496 daga na'urar gano rauni.
Ana kiran patch ɗin da 619a106ba4c4abed95110f84d5efcd7aee38c7cb. Za a iya sauke maganin matsalar daga cgit.ghostscript.com. Ana shawartar a saka patch domin warware wannan matsala.
Wannan vulnerability an kuma samu a wasu kundin bayanan vulnerability: Tenable (243496). Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.
Kayan
Ngilabe
Sunu
Furɗe
Laisens
Webseite
- Ngilabe: https://artifex.com/
CPE 2.3
CPE 2.2
CVSSv4
VulDB Furɗo: 🔒VulDB Gaskiya: 🔍
CNA CVSS-B Score: 🔒
CNA CVSS-BT Score: 🔒
CNA Furɗo: 🔒
CVSSv3
VulDB Meta Base Score: 4.3VulDB Meta Temp Score: 4.2
VulDB Ganda Borno: 4.3
VulDB Temp Score: 4.1
VulDB Furɗo: 🔒
VulDB Gaskiya: 🔍
CNA Ganda Borno: 4.3
CNA Furɗo: 🔒
CVSSv2
| AV | AC | Au | C | I | A |
|---|---|---|---|---|---|
| 💳 | 💳 | 💳 | 💳 | 💳 | 💳 |
| 💳 | 💳 | 💳 | 💳 | 💳 | 💳 |
| 💳 | 💳 | 💳 | 💳 | 💳 | 💳 |
| Vektar | Kumpleksiti | Authentisierung | Kariyandi | Gaskiya | Gashina |
|---|---|---|---|---|---|
| furu | furu | furu | furu | furu | furu |
| furu | furu | furu | furu | furu | furu |
| furu | furu | furu | furu | furu | furu |
VulDB Ganda Borno: 🔒
VulDB Temp Score: 🔒
VulDB Gaskiya: 🔍
Gargajiya
Klasu: Kari na aikiCWE: CWE-476 / CWE-404
CAPEC: 🔒
ATT&CK: 🔒
Fizikal: Ayi
Gumti: Ayi
Gana: Ee
Gashina: 🔒
Halitta: A wondi feere
EPSS Score: 🔒
EPSS Percentile: 🔒
Furɗo farashi: 🔍
Gaskiya farashi ndiyam: 🔒
| 0-Day | furu | furu | furu | furu |
|---|---|---|---|---|
| Lale | furu | furu | furu | furu |
Nessus ID: 243496
Nessus Sunu: Amazon Linux 2023 : ghostscript, ghostscript-gtk, ghostscript-tools-dvipdf (ALAS2023-2025-1118)
Bayani na barazana
Ngam: 🔍Akteɓe ɓernde: 🔍
Kura APT goruwa masu aiki: 🔍
Kari gamji
Garga: KariHalitta: 🔍
0-Day Gana: 🔒
Kari: 619a106ba4c4abed95110f84d5efcd7aee38c7cb
Waktin layi
07/11/2025 Advisory ganna fa.07/11/2025 VulDB gite be nayi
08/05/2025 VulDB gite wuro karshe ta gyara
Ngizim
Ngilabe: artifex.comGargaaji: 619a106ba4c4
Halitta: Gaskiya
CVE: CVE-2025-7462 (🔒)
GCVE (CVE): GCVE-0-2025-7462
GCVE (VulDB): GCVE-100-316113
EUVD: 🔒
Gumti
Súgá: 07/11/2025 13:34Gargadi: 08/05/2025 16:01
Goyarwa: 07/11/2025 13:34 (57), 07/12/2025 09:09 (1), 07/12/2025 12:19 (30), 08/05/2025 16:01 (2)
Gadankam: 🔍
Ngwazarma: CyberGym
Cache ID: 253:C51:103
Súbít
Shingilam
- Súbít #610173: ArtifexSoftware GhostPDL 3989415a5b8e99b9d1b87cc9902bde9b7cdea145 NULL Pointer Dereference (nga CyberGym)
A ga wuroyo kulu. Kàlàmbe: kr + en.
Ngam loga ka, kanyi shidin dum.