Description
In Artifex GhostXPS before 10.06.0, there is a stack-based buffer overflow in xps_unpredict_tiff in xpstiff.c because the samplesperpixel value is not checked.
Problem types
CWE-121 Stack-based Buffer Overflow
Product status
Any version before 10.06.0
References
bugs.ghostscript.com/show_bug.cgi?id=708819
cgit.ghostscript.com/...7069197d548a8db69ba5d63f766bff40eaab