An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows attackers to cause a denial of service via a crafted file, because file size is not properly used to restrict scanline, strip, and tile allocations.

Project Subscriptions

Vendors Products
Debian Linux Subscribe
Graphicsmagick Subscribe
Graphicsmagick Subscribe
Advisories
Source ID Title
Debian DLA Debian DLA DLA-1322-1 graphicsmagick security update
Debian DLA Debian DLA DLA-1456-1 graphicsmagick security update
Debian DSA Debian DSA DSA-4321-1 graphicsmagick security update
EUVD EUVD EUVD-2017-9361 An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows attackers to cause a denial of service via a crafted file, because file size is not properly used to restrict scanline, strip, and tile allocations.
Ubuntu USN Ubuntu USN USN-4266-1 GraphicsMagick vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-05T21:13:49.293Z

Reserved: 2018-03-13T00:00:00

Link: CVE-2017-18229

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-03-14T02:29:00.223

Modified: 2024-11-21T03:19:37.540

Link: CVE-2017-18229

cve-icon Redhat

Severity : Low

Publid Date: 2017-09-13T00:00:00Z

Links: CVE-2017-18229 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses