Описание
The ReadMNGImage function in coders/png.c in GraphicsMagick 1.3.26 has an out-of-order CloseBlob call, resulting in a use-after-free via a crafted file.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | not-affected | 1.3.26-3 |
| bionic | not-affected | 1.3.26-3 |
| cosmic | not-affected | 1.3.26-3 |
| devel | not-affected | 1.3.26-3 |
| disco | not-affected | 1.3.26-3 |
| eoan | not-affected | 1.3.26-3 |
| esm-apps/bionic | not-affected | 1.3.26-3 |
| esm-apps/focal | not-affected | 1.3.26-3 |
| esm-apps/jammy | not-affected | 1.3.26-3 |
| esm-apps/xenial | released | 1.3.23-1ubuntu0.2 |
Показывать по
6.8 Medium
CVSS2
8.8 High
CVSS3
Связанные уязвимости
The ReadMNGImage function in coders/png.c in GraphicsMagick 1.3.26 has an out-of-order CloseBlob call, resulting in a use-after-free via a crafted file.
The ReadMNGImage function in coders/png.c in GraphicsMagick 1.3.26 has ...
The ReadMNGImage function in coders/png.c in GraphicsMagick 1.3.26 has an out-of-order CloseBlob call, resulting in a use-after-free via a crafted file.
Уязвимость функции ReadMNGImage (coders/png.c) кроссплатформенной библиотеки для работы с графикой GraphicsMagick, позволяющая нарушителю выполнить произвольный код
6.8 Medium
CVSS2
8.8 High
CVSS3