VDB
BDU%3A2020-02026
BDU%3A2020-02026
PUBLISHED
CVSS 5.800000190734863 MEDIUM
Уязвимость функции ReadMNGImage графического редактора GraphicsMagick, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить несанкционированный доступ к информации и нарушить ее доступность
Risk Scores
CVSS 2.0
5.800000190734863
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Сообщество свободного программного обеспечения, Novell Inc., Canonical Ltd., ООО «РусБИТех-Астра», GraphicsMagick Group, АО «Концерн ВНИИНС» | Debian GNU/Linux, OpenSUSE Leap, Ubuntu, Astra Linux Special Edition (запись в едином реестре российских программ №369), Suse Linux Enterprise Desktop, SUSE Enterprise Storage, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise Software Development Kit, SUSE Linux Enterprise Workstation Extension, SUSE OpenStack Cloud, SUSE Linux Enterprise Module for Open Buildservice Development Tools, Suse Linux Enterprise Server, SUSE Linux Enterprise Module for Desktop Applications, SUSE Linux Enterprise Module for Development Tools, SUSE Linux Enterprise Point of Sale, SUSE Linux Enterprise High Performance Computing, Astra Linux Special Edition для «Эльбрус» (запись в едином реестре российских программ №11156), GraphicsMagick, ОС ОН «Стрелец» (запись в едином реестре российских программ №6177) |
Timeline
- May 13, 2020 CVE Published
- Nov 21, 2023 CVE Updated
References
- http://hg.graphicsmagick.org/hg/GraphicsMagick/rev/40fc71472b98 url
- http://hg.graphicsmagick.org/hg/GraphicsMagick/rev/86a9295e7c83 url
- https://lists.opensuse.org/opensuse-security-announce/2019-04/msg00093.html url
- https://lists.opensuse.org/opensuse-security-announce/2019-04/msg00107.html url
- https://lists.opensuse.org/opensuse-security-announce/2019-05/msg00006.html url
- https://lists.opensuse.org/opensuse-security-announce/2019-05/msg00010.html url
- https://nvd.nist.gov/vuln/detail/CVE-2019-11007 url
- https://security-tracker.debian.org/tracker/CVE-2019-11007 url
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20210611SE16 url
- https://www.suse.com/security/cve/CVE-2019-11007/ url
- https://wiki.astralinux.ru/astra-linux-se81-bulletin-20211019SE81 url
- https://strelets.net/patchi-i-obnovleniya-bezopasnosti#16012023 url
- https://usn.ubuntu.com/4207-1/ advisory
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20210730SE16 advisory