CVE-2013-5653: Artifex Afpl Ghostscript

Medium severity, CVSS 5.5. EPSS: 2% chance of exploitation in the next 30 days.

The getenv and filenameforall functions in Ghostscript 9.10 ignore the "-dSAFER" argument, which allows remote attackers to read data via a crafted postscript file.

Affected products

  • Artifex Afpl Ghostscript: version 9.10 only
  • Debian Debian Linux: version 8.0 only

Published 2017-03-07. Last modified 2026-06-16.