CVE-2025-27834
HIGHGhostscript < 10.05.0 - Buffer Overflow via Oversized Type 4 Function in PDF
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2025-27834. PoCs published by manus-use.
AI-analyzed exploit summary The repository contains functional exploit code for CVE-2025-32433, targeting Erlang/OTP SSH. The PoC demonstrates a pre-authentication RCE by sending crafted SSH packets to execute arbitrary commands on the server.
Description
An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs via an oversized Type 4 function in a PDF document to pdf/pdf_func.c.
Exploits (1)
github
WORKING POC
by manus-use · postscriptpoc
https://github.com/manus-use/cve-pocs/tree/main/ghostscript-CVE-2025-27834
The repository contains functional exploit code for CVE-2025-32433, targeting Erlang/OTP SSH. The PoC demonstrates a pre-authentication RCE by sending crafted SSH packets to execute arbitrary commands on the server.
Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target:
Erlang/OTP SSH (OTP-22.3.4.17)
No auth needed
Prerequisites:
network access to target SSH port · vulnerable Erlang/OTP version
MITRE ATT&CK
devstral-2 · analyzed Feb 27, 2026
Full analysis →
References (1)
Core 1
Core References
Issue Tracking, Patch
https://bugs.ghostscript.com/show_bug.cgi?id=708253
Scores
CVSS v3
7.8
EPSS
0.0007
EPSS Percentile
22.0%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
total
Details
CWE
CWE-120
Status
published
Products (1)
artifex/ghostscript
< 10.05.0
Published
Mar 25, 2025
Tracked Since
Feb 18, 2026