Export CSV

Products

1 vendor
VendorProductsCVEsKEVAvg EPSSWorst Severity
1121079.6%CRITICAL

Related CVEs

100+
CVE IDDescriptionSeverityCVSSKEVEPSSPublished
CVE-2025-32460GraphicsMagick before 8e56520 has a heap-based buffer over-read in ReadJXLImage in coders/jxl.c, related to an ImportViewPixelArea call.CRITICAL9.121.4%Apr 9, 2025
CVE-2025-27796ReadWPGImage in WPG in GraphicsMagick before 1.3.46 mishandles palette buffer allocation, resulting in out-of-bounds access to heap memory in ReadBlob.CRITICAL9.827.5%Mar 7, 2025
CVE-2025-27795ReadJXLImage in JXL in GraphicsMagick before 1.3.46 lacks image dimension resource limits.HIGH7.533.1%Mar 7, 2025
CVE-2020-21679Buffer Overflow vulnerability in WritePCXImage function in pcx.c in GraphicsMagick 1.4 allows remote attackers to cause a denial of service via converting of crafted image file to pcx format.MEDIUM5.529.2%Aug 22, 2023
CVE-2022-1270In GraphicsMagick, a heap buffer overflow was found when parsing MIFF.HIGH7.8Sep 28, 2022
CVE-2020-12672GraphicsMagick through 1.3.35 has a heap-based buffer overflow in ReadMNGImage in coders/png.c.HIGH7.585.0%May 6, 2020
CVE-2020-10938GraphicsMagick before 1.3.35 has an integer overflow and resultant heap-based buffer overflow in HuffmanDecodeImage in magick/compress.c.CRITICAL9.891.5%Mar 24, 2020
CVE-2019-12921In GraphicsMagick before 1.3.32, the text filename component allows remote attackers to read arbitrary files via a crafted image because of TranslateTextEx for SVG.MEDIUM6.594.0%Mar 18, 2020
CVE-2019-19953In GraphicsMagick 1.4 snapshot-20191208 Q8, there is a heap-based buffer over-read in the function EncodeImage of coders/pict.c.CRITICAL9.184.6%Dec 24, 2019
CVE-2019-19951In GraphicsMagick 1.4 snapshot-20190423 Q8, there is a heap-based buffer overflow in the function ImportRLEPixels of coders/miff.c.CRITICAL9.883.0%Dec 24, 2019
CVE-2019-19950In GraphicsMagick 1.4 snapshot-20190403 Q8, there is a use-after-free in ThrowException and ThrowLoggedException of magick/error.c.CRITICAL9.884.1%Dec 24, 2019
CVE-2019-11506In GraphicsMagick from version 1.3.30 to 1.4 snapshot-20190403 Q8, there is a heap-based buffer overflow in the function WriteMATLABImage of coders/mat.c, which allows an attacker to cause a denial of service or possibly have unspecified other impact via a crafted image file. This is related to ExportRedQuantumType in magick/export.c.HIGH8.883.1%Apr 24, 2019
CVE-2019-11505In GraphicsMagick from version 1.3.8 to 1.4 snapshot-20190403 Q8, there is a heap-based buffer overflow in the function WritePDBImage of coders/pdb.c, which allows an attacker to cause a denial of service or possibly have unspecified other impact via a crafted image file. This is related to MagickBitStreamMSBWrite in magick/bit_stream.c.HIGH8.885.0%Apr 24, 2019
CVE-2019-11474coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (floating-point exception and application crash) by crafting an XWD image file, a different vulnerability than CVE-2019-11008 and CVE-2019-11009.MEDIUM6.579.9%Apr 23, 2019
CVE-2019-11473coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (out-of-bounds read and application crash) by crafting an XWD image file, a different vulnerability than CVE-2019-11008 and CVE-2019-11009.NONE81.7%Apr 23, 2019
CVE-2019-11010In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a memory leak in the function ReadMPCImage of coders/mpc.c, which allows attackers to cause a denial of service via a crafted image file.NONE75.8%Apr 8, 2019
CVE-2019-11009In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadXWDImage of coders/xwd.c, which allows attackers to cause a denial of service or information disclosure via a crafted image file.NONE82.1%Apr 8, 2019
CVE-2019-11008In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer overflow in the function WriteXWDImage of coders/xwd.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image file.HIGH8.888.6%Apr 8, 2019
CVE-2019-11007In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the ReadMNGImage function of coders/png.c, which allows attackers to cause a denial of service or information disclosure via an image colormap.HIGH8.177.9%Apr 8, 2019
CVE-2019-11006In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a heap-based buffer over-read in the function ReadMIFFImage of coders/miff.c, which allows attackers to cause a denial of service or information disclosure via an RLE packet.NONE85.2%Apr 8, 2019