PT-2019-5242 · Graphicsmagick+3 · Graphicsmagick+3
Galycannon
·
Published
2019-04-08
·
Updated
2021-03-09
·
CVE-2019-11010
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
GraphicsMagick versions 1.4 snapshot-20190322 Q8
Description
The issue is related to a memory leak in the
ReadMPCImage function of the GraphicsMagick graphic editor, which can be exploited by a remote attacker using a specially crafted image file, potentially leading to a denial of service.Recommendations
For GraphicsMagick version 1.4 snapshot-20190322 Q8, consider disabling the
ReadMPCImage function until a patch is available to prevent potential denial of service attacks via crafted image files.Fix
DoS
Memory Leak
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Graphicsmagick
Suse
Ubuntu