6.5
CVSSv3

CVE-2017-18229

Published: 14/03/2018 Updated: 10/02/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

An issue exists in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows malicious users to cause a denial of service via a crafted file, because file size is not properly used to restrict scanline, strip, and tile allocations.

Vulnerable Product Search on Vulmon Subscribe to Product

graphicsmagick graphicsmagick 1.3.26

debian debian linux 9.0

debian debian linux 7.0

debian debian linux 8.0

Vendor Advisories

Several security issues were fixed in GraphicsMagick ...