UBUNTU-CVE-2017-11102
Dashboard / Vulnerabilities / UBUNTU-CVE-2017-11102
UBUNTU-CVE-2017-11102
Summary:
Details: The ReadOneJNGImage function in coders/png.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (application crash) during JNG reading via a zero-length color_image data structure.
References: https://ubuntu.com/security/CVE-2017-11102, http://hg.code.sf.net/p/graphicsmagick/code/rev/d445af60a8d5, http://hg.code.sf.net/p/graphicsmagick/code/rev/dea93a690fc1, http://hg.code.sf.net/p/graphicsmagick/code/rev/4d0baa77245b, http://hg.code.sf.net/p/graphicsmagick/code/rev/e8f859704230, https://ubuntu.com/security/notices/USN-4206-1, https://www.cve.org/CVERecord?id=CVE-2017-11102
Affected packages
Package
Name: graphicsmagick
Purl: pkg:deb/ubuntu/[email protected]+esm2?arch=source&distro=trusty/esm
Affected ranges
Type: ECOSYSTEM
Events:
