GraphicsMagick Multiple Vulnerabilities

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

### Vulnerabilities summary The following advisory describes two (2) vulnerabilities found in GraphicsMagick. GraphicsMagick is “The swiss army knife of image processing. Comprised of 267K physical lines (according to David A. Wheeler’s SLOCCount) of source code in the base package (or 1,225K including 3rd party libraries) it provides a robust and efficient collection of tools and libraries which support reading, writing, and manipulating an image in over 88 major formats including important formats like DPX, GIF, JPEG, JPEG-2000, PNG, PDF, PNM, and TIFF.” The vulnerabilities found are: * Memory Information Disclosure * Heap Overflow ### Credit An independent security researchers, Jeremy Heng (@nn_amon) and Terry Chia (Ayrx), has reported this vulnerability to Beyond Security’s SecuriTeam Secure Disclosure program ### Vendor response The vendor has released patches to address these vulnerabilities (15237:e4e1c2a581d8 and 15238:7292230dd18). For more details:...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息