Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-18229

Опубликовано: 14 мар. 2018
Источник: debian
EPSS Низкий

Описание

An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows attackers to cause a denial of service via a crafted file, because file size is not properly used to restrict scanline, strip, and tile allocations.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
graphicsmagickfixed1.3.27-1package

Примечания

  • http://hg.graphicsmagick.org/hg/GraphicsMagick/rev/752c0b41fa32

  • https://sourceforge.net/p/graphicsmagick/bugs/461/

EPSS

Процентиль: 77%
0.01015
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 8 лет назад

An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows attackers to cause a denial of service via a crafted file, because file size is not properly used to restrict scanline, strip, and tile allocations.

CVSS3: 3.3
redhat
больше 8 лет назад

An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows attackers to cause a denial of service via a crafted file, because file size is not properly used to restrict scanline, strip, and tile allocations.

CVSS3: 6.5
nvd
почти 8 лет назад

An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows attackers to cause a denial of service via a crafted file, because file size is not properly used to restrict scanline, strip, and tile allocations.

CVSS3: 6.5
github
больше 3 лет назад

An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows attackers to cause a denial of service via a crafted file, because file size is not properly used to restrict scanline, strip, and tile allocations.

suse-cvrf
больше 7 лет назад

Security update for GraphicsMagick

EPSS

Процентиль: 77%
0.01015
Низкий