← Back

Graphicsmagick

graphicsmagick

Vendor: Graphicsmagick • 121 CVEs

CVEs (121)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Graphicsmagick
1Graphicsmagick
May 13, 2026
Sep 1, 2017
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
The ReadJNGImage and ReadOneJNGImage functions in coders/png.c in GraphicsMagick 1.3.26 do not properly manage image pointers after certain error conditions, which allows remote attackers to conduct use-after-free attack...Show more
The ReadJNGImage and ReadOneJNGImage functions in coders/png.c in GraphicsMagick 1.3.26 do not properly manage image pointers after certain error conditions, which allows remote attackers to conduct use-after-free attacks via a crafted file, related to a ReadMNGImage out-of-order CloseBlob call. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-11403.Show less
1Graphicsmagick
1Graphicsmagick
May 13, 2026
Aug 30, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
A memory allocation failure was discovered in the ReadPNMImage function in coders/pnm.c in GraphicsMagick 1.3.26. The vulnerability causes a big memory allocation, which may lead to remote denial of service in the Magick...Show more
A memory allocation failure was discovered in the ReadPNMImage function in coders/pnm.c in GraphicsMagick 1.3.26. The vulnerability causes a big memory allocation, which may lead to remote denial of service in the MagickRealloc function in magick/memory.c.Show less
2Debian
Graphicsmagick
2Debian Linux
Graphicsmagick
May 13, 2026
Aug 30, 2017
N/A· v4
6.5 MEDIUM· v3
7.1 HIGH· v2
GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version==10 case that results in the reader not returning; it would cause large amounts of CPU and memory cons...Show more
GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version==10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.Show less
2Debian
Graphicsmagick
2Debian Linux
Graphicsmagick
May 13, 2026
Aug 30, 2017
N/A· v4
6.5 MEDIUM· v3
7.1 HIGH· v2
GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version!=10 case that results in the reader not returning; it would cause large amounts of CPU and memory cons...Show more
GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version!=10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.Show less
2Debian
Graphicsmagick
2Debian Linux
Graphicsmagick
May 13, 2026
Aug 30, 2017
N/A· v4
6.5 MEDIUM· v3
7.1 HIGH· v2
GraphicsMagick 1.3.26 has a denial of service issue in ReadJNXImage() in coders/jnx.c whereby large amounts of CPU and memory resources may be consumed although the file itself does not support the requests.
2Debian
Graphicsmagick
2Debian Linux
Graphicsmagick
May 13, 2026
Aug 29, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
There is an invalid free in the MagickFree function in magick/memory.c in GraphicsMagick 1.3.26 that will lead to a remote denial of service attack.
1Graphicsmagick
1Graphicsmagick
May 13, 2026
Aug 29, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
There are lots of memory leaks in the GMCommand function in magick/command.c in GraphicsMagick 1.3.26 that will lead to a remote denial of service attack.
1Graphicsmagick
1Graphicsmagick
May 13, 2026
Aug 23, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
In GraphicsMagick 1.3.26, a memory leak vulnerability was found in the function ReadMATImage in coders/mat.c.
1Graphicsmagick
1Graphicsmagick
May 13, 2026
Aug 23, 2017
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
In GraphicsMagick 1.3.26, an allocation failure vulnerability was found in the function ReadMNGImage in coders/png.c when a small MNG file has a MEND chunk with a large length value.
1Graphicsmagick
1Graphicsmagick
May 13, 2026
Aug 22, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
GraphicsMagick 1.3.26 has a memory leak vulnerability in the function CloneImage in magick/image.c.
2Debian
Graphicsmagick
2Debian Linux
Graphicsmagick
May 13, 2026
Aug 22, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
GraphicsMagick 1.3.26 has a NULL pointer dereference vulnerability in the function SVGStartElement in coders/svg.c.
2Debian
Graphicsmagick
2Debian Linux
Graphicsmagick
May 13, 2026
Aug 22, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
GraphicsMagick 1.3.26 has a heap-based buffer overflow vulnerability in the function GetStyleTokens in coders/svg.c:311:12.
2Debian
Graphicsmagick
2Debian Linux
Graphicsmagick
May 13, 2026
Aug 22, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
GraphicsMagick 1.3.26 has a heap-based buffer overflow vulnerability in the function GetStyleTokens in coders/svg.c:314:12.
2Debian
Graphicsmagick
2Debian Linux
Graphicsmagick
May 13, 2026
Aug 18, 2017
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
The ReadSUNImage function in coders/sun.c in GraphicsMagick 1.3.26 has a colormap heap-based buffer over-read.
2Debian
Graphicsmagick
2Debian Linux
Graphicsmagick
May 13, 2026
Aug 18, 2017
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
The ReadWMFImage function in coders/wmf.c in GraphicsMagick 1.3.26 has a use-after-free issue for data associated with exception reporting.
2Debian
Graphicsmagick
2Debian Linux
Graphicsmagick
May 13, 2026
Aug 18, 2017
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
The ReadMNGImage function in coders/png.c in GraphicsMagick 1.3.26 mishandles large MNG images, leading to an invalid memory read in the SetImageColorCallBack function in magick/image.c.
1Graphicsmagick
1Graphicsmagick
May 13, 2026
Jul 28, 2017
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
The WriteOnePNGImage function in coders/png.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted file, because the program's actual cont...Show more
The WriteOnePNGImage function in coders/png.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted file, because the program's actual control flow was inconsistent with its indentation. This resulted in a logging statement executing outside of a loop, and consequently using an invalid array index corresponding to the loop's exit condition.Show less
1Graphicsmagick
1Graphicsmagick
May 13, 2026
Jul 26, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
GraphicsMagick 1.3.26 has a heap overflow in the WriteCMYKImage() function in coders/cmyk.c when processing multiple frames that have non-identical widths.
1Graphicsmagick
1Graphicsmagick
May 13, 2026
Jul 26, 2017
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
GraphicsMagick 1.3.26 has a NULL pointer dereference in the WriteMAPImage() function in coders/map.c when processing a non-colormapped image, a different vulnerability than CVE-2017-11638.
1Graphicsmagick
1Graphicsmagick
May 13, 2026
Jul 26, 2017
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
GraphicsMagick 1.3.26 has a Memory Leak in the PersistCache function in magick/pixel_cache.c during writing of Magick Persistent Cache (MPC) files.