CVE-2020-16287
Ghostscript vulnerability analysis and mitigation

Overview

CVE-2020-16287 is a buffer overflow vulnerability discovered in Ghostscript, an interpreter for PostScript and PDF documents. The vulnerability was identified in the lprn_is_black() function located in contrib/lips4/gdevlprn.c. This security issue was reported on October 26, 2019, and was fixed in subsequent updates (Ghostscript Bug).

Technical details

The vulnerability is a heap-based buffer overflow that occurs in the lprn_is_black() function at line 338 of contrib/lips4/gdevlprn.c. The issue manifests when processing certain document files, specifically when using the lips2p output device. The bug was discovered through testing with AddressSanitizer, which detected a heap-buffer-overflow READ operation (Ghostscript Bug).

Impact

If exploited, this vulnerability could result in a denial of service (DoS) condition when processing specially crafted PS/EPS/PDF files. The buffer overflow could potentially lead to system crashes and service disruption (Ubuntu Notice, Debian Notice).

Exploitability

The vulnerability can be triggered by processing a specially crafted file using the Ghostscript interpreter with the lips2p device. An attacker would need to trick a user or automated system into processing a malicious document to exploit this vulnerability (Ubuntu Notice).

Mitigation and workarounds

The vulnerability was fixed in Ghostscript version 9.27 and later releases. Users are recommended to upgrade their Ghostscript installations to patched versions. For specific distributions: Ubuntu users should update to versions 9.50~dfsg-5ubuntu4.2 (20.04), 9.26~dfsg+0-0ubuntu0.18.04.13 (18.04), or 9.26~dfsg+0-0ubuntu0.16.04.13 (16.04). Debian users should upgrade to version 9.27~dfsg-2+deb10u4 for the stable distribution (Ubuntu Notice, Debian Notice).

Additional resources


SourceThis report was generated using AI

Related Ghostscript vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-59800MEDIUM5.5
  • Ghostscript logoGhostscript
  • ghostscript
NoYesSep 22, 2025
CVE-2025-59799MEDIUM5.5
  • Ghostscript logoGhostscript
  • ghostscript-devel
NoYesSep 22, 2025
CVE-2025-59798MEDIUM5.5
  • Ghostscript logoGhostscript
  • ghostscript-tools-dvipdf
NoYesSep 22, 2025
CVE-2025-59801MEDIUM4.3
  • Ghostscript logoGhostscript
  • ghostscript
NoYesSep 22, 2025
CVE-2026-6192LOW1.9
  • Ghostscript logoGhostscript
  • openjpeg
NoYesApr 13, 2026

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management