5
CVSSv2

CVE-2020-12672

Published: 06/05/2020 Updated: 14/11/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

GraphicsMagick up to and including 1.3.35 has a heap-based buffer overflow in ReadMNGImage in coders/png.c.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

graphicsmagick graphicsmagick

debian debian linux 8.0

opensuse leap 15.1

opensuse backports sle 15.0

Vendor Advisories

Debian Bug report logs - #960000 graphicsmagick: CVE-2020-12672 Package: src:graphicsmagick; Maintainer for src:graphicsmagick is Laszlo Boszormenyi (GCS) <gcs@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 8 May 2020 06:03:02 UTC Severity: important Tags: security, upstream Found in ...