In GraphicsMagick from version 1.3.8 to 1.4 snapshot-20190403 Q8, there is a heap-based buffer overflow in the function WritePDBImage of coders/pdb.c, which allows an attacker to cause a denial of service or possibly have unspecified other impact via a crafted image file. This is related to MagickBitStreamMSBWrite in magick/bit_stream.c.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-04-24T20:31:00

Updated: 2024-08-04T22:55:40.251Z

Reserved: 2019-04-24T00:00:00

Link: CVE-2019-11505

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-04-24T21:29:00.993

Modified: 2023-03-01T15:26:07.823

Link: CVE-2019-11505

cve-icon Redhat

No data.