PT-2025-10040 · Unknown+5 · Graphicsmagick+5

Bobfriesenhahn

·

Published

2024-06-18

·

Updated

2026-05-13

·

CVE-2025-27795

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions GraphicsMagick versions prior to 1.3.46
Description The issue is related to JXL in GraphicsMagick, which lacks image dimension resource limits.
Recommendations For versions prior to 1.3.46, update to version 1.3.46 or later to resolve the issue.

Fix

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

BDU:2025-03871
CVE-2025-27795
DSA-5905-1
JLSEC-2026-493
MGASA-2025-0132
OESA-2025-1506
OPENSUSE-SU-2025:14949-1
OPENSUSE-SU-2025_1129-1
SUSE-SU-2025:1129-1
USN-7433-1

Affected Products

Debian
Graphicsmagick
Linuxmint
Red Os
Suse
Ubuntu