GraphicsMagick CVE-2017-13736 Multiple Denial of Service Vulnerabilities
BID:100513
CVE-2017-13736 |Info
GraphicsMagick CVE-2017-13736 Multiple Denial of Service Vulnerabilities
| Bugtraq ID: | 100513 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2017-13736 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 29 2017 12:00AM |
| Updated: | Aug 29 2017 12:00AM |
| Credit: | OWL337 |
| Vulnerable: |
GraphicsMagick GraphicsMagick 1.3.26 |
| Not Vulnerable: | |
Discussion
GraphicsMagick CVE-2017-13736 Multiple Denial of Service Vulnerabilities
GraphicsMagick is prone to multiple denial-of-service vulnerabilities.
Attackers can exploit these issues to cause denial-of-service conditions.
GraphicsMagick 1.3.26 is vulnerable; other versions may also be affected.
GraphicsMagick is prone to multiple denial-of-service vulnerabilities.
Attackers can exploit these issues to cause denial-of-service conditions.
GraphicsMagick 1.3.26 is vulnerable; other versions may also be affected.
Exploit / POC
GraphicsMagick CVE-2017-13736 Multiple Denial of Service Vulnerabilities
The researcher who discovered these issues has created a proof-of-concept. Please see the references for more information.
The researcher who discovered these issues has created a proof-of-concept. Please see the references for more information.
Solution / Fix
GraphicsMagick CVE-2017-13736 Multiple Denial of Service Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
GraphicsMagick CVE-2017-13736 Multiple Denial of Service Vulnerabilities
References:
References:
- Bug 1484192 - There are lots of memory leaks in magick/command.c of GraphicsMagi (Red Hat)
- GraphicsMagick Homepage (GraphicsMagick)