Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rp4h-vf6c-9ffm

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version==10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.

GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version==10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.

EPSS

Процентиль: 77%
0.01071
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-834

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 8 лет назад

GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version==10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.

CVSS3: 6.5
nvd
больше 8 лет назад

GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version==10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.

CVSS3: 6.5
debian
больше 8 лет назад

GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() ...

CVSS3: 6.5
fstec
больше 8 лет назад

Уязвимость функции ReadXBMImage кроссплатформенной библиотеки для работы с графикой GraphicsMagick, позволяющая нарушителю вызвать отказ в обслуживании

suse-cvrf
около 8 лет назад

Security update for GraphicsMagick

EPSS

Процентиль: 77%
0.01071
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-834