Security Advisory

CVE-2017-16547

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-11-06 05:00:00
Last updated 2024-08-05 20:27:04
Assigner mitre
State PUBLISHED

Description

The DrawImage function in magick/render.c in GraphicsMagick 1.3.26 does not properly look for pop keywords that are associated with push keywords, which allows remote attackers to cause a denial of service (negative strncpy and application crash) or possibly have unspecified other impact via a crafted file.