alpine · CVE-2025-59801

Quick triage

Priority: medium Published: Updated:

View at Official alpine advisory, NVD, CVE.org · CVE detail

Freshness: no update timestamp found; verify against the upstream OS advisory manually.

Tracker summary

CVE-2025-59801: 1 source package rows (ghostscript); 3 state rows across 3 repos (3.23-main, edge-community, edge-main); fixed 3, open 0.

Description:

In Artifex GhostXPS before 10.06.0, there is a stack-based buffer overflow in xps_unpredict_tiff in xpstiff.c because the samplesperpixel value is not checked.

cvelogic Threat Intelligence