AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-28879

CRITICAL · CVSS 9.8 EPSS 6.34%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-03-31 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. See the original NVD description below for full technical details.

CVE
CVE-2023-28879
Severity
CRITICAL
CVSS
9.8
EPSS
6.34%

Original NVD Description

In Artifex Ghostscript through 10.01.0, there is a buffer overflow leading to potential corruption of data internal to the PostScript interpreter, in base/sbcp.c. This affects BCPEncode, BCPDecode, TBCPEncode, and TBCPDecode. If the write buffer is filled to one byte less than full, and one then tries to write an escaped character, two bytes are written.

Related CVEs

Other vulnerabilities affecting the same vendor(s)