CVE-2025-48708

gs_lib_ctx_stash_sanitized_arg in base/gslibctx.c in Artifex Ghostscript before 10.05.1 lacks argument sanitization for the # case. A created PDF document includes its password in cleartext.
Configurations

Configuration 1 (hide)

cpe:2.3:a:artifex:ghostscript:*:*:*:*:*:*:*:*

History

20 Jun 2025, 17:13

Type Values Removed Values Added
First Time Artifex
Artifex ghostscript
References () https://bugs.ghostscript.com/show_bug.cgi?id=708446 - () https://bugs.ghostscript.com/show_bug.cgi?id=708446 - Issue Tracking
References () https://cgit.ghostscript.com/cgi-bin/cgit.cgi/ghostpdl.git/commit/?id=b587663c623b4462f9e78686a31fd880207303ee - () https://cgit.ghostscript.com/cgi-bin/cgit.cgi/ghostpdl.git/commit/?id=b587663c623b4462f9e78686a31fd880207303ee - Patch
References () http://www.openwall.com/lists/oss-security/2025/05/23/2 - () http://www.openwall.com/lists/oss-security/2025/05/23/2 - Mailing List
CPE cpe:2.3:a:artifex:ghostscript:*:*:*:*:*:*:*:*

24 May 2025, 01:15

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2025/05/23/2 -

23 May 2025, 15:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 2.9
v2 : unknown
v3 : 4.0
Summary
  • (es) gs_lib_ctx_stash_sanitized_arg en base/gslibctx.c en Artifex Ghostscript hasta 10.05.0 carece de depuración de argumentos para el caso #.
Summary (en) gs_lib_ctx_stash_sanitized_arg in base/gslibctx.c in Artifex Ghostscript through 10.05.0 lacks argument sanitization for the # case. (en) gs_lib_ctx_stash_sanitized_arg in base/gslibctx.c in Artifex Ghostscript before 10.05.1 lacks argument sanitization for the # case. A created PDF document includes its password in cleartext.

23 May 2025, 04:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-05-23 04:15

Updated : 2025-06-20 17:13


NVD link : CVE-2025-48708

Mitre link : CVE-2025-48708

CVE.ORG link : CVE-2025-48708


JSON object : View

Products Affected

artifex

  • ghostscript
CWE
CWE-212

Improper Removal of Sensitive Information Before Storage or Transfer