UBUNTU-CVE-2017-16545
Dashboard / Vulnerabilities / UBUNTU-CVE-2017-16545
UBUNTU-CVE-2017-16545
Summary:
Details: The ReadWPGImage function in coders/wpg.c in GraphicsMagick 1.3.26 does not properly validate colormapped images, which allows remote attackers to cause a denial of service (ImportIndexQuantumType invalid write and application crash) or possibly have unspecified other impact via a malformed WPG image.
References: https://ubuntu.com/security/CVE-2017-16545, http://hg.code.sf.net/p/graphicsmagick/code/rev/e8086faa52d0, https://sourceforge.net/p/graphicsmagick/bugs/519/, https://ubuntu.com/security/notices/USN-4248-1, https://www.cve.org/CVERecord?id=CVE-2017-16545
Affected packages
Package
Name: graphicsmagick
Purl: pkg:deb/ubuntu/[email protected]+esm5?arch=source&distro=trusty/esm
Affected ranges
Type: ECOSYSTEM
Events:
