8.8
CVSSv3

CVE-2017-17912

Published: 27/12/2017 Updated: 10/02/2020
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

It exists that GraphicsMagick incorrectly handled certain image files. An attacker could possibly use this issue to cause a denial of service or other unspecified impact.

Vulnerable Product Search on Vulmon Subscribe to Product

graphicsmagick graphicsmagick 1.3.27

debian debian linux 7.0

debian debian linux 8.0

debian debian linux 9.0

Vendor Advisories

Several security issues were fixed in GraphicsMagick ...
Memory information disclosure in DescribeImage function in magick/describecGraphicsMagick is vulnerable to a memory information disclosure vulnerability found in the DescribeImage function of the magick/describec file, because of a heap-based buffer over-read The portion of the code containing the vulnerability is responsible for printing the IP ...