CVE-2019-19953 PUBLISHED

In GraphicsMagick 1.4 snapshot-20191208 Q8, there is a heap-based buffer over-read in the function EncodeImage of coders/pict.c.

EPSS 1.31% · 79.7th percentile

Risk Scores

EPSS Score
1.31%
79.7th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSgraphicsmagick0, 1.3.16-1.1ubuntu2, 1.3.16-1.1ubuntu3
Ubuntu:Pro:16.04:LTSgraphicsmagick0, 1.3.21-3, 1.3.23-1
Ubuntu:Pro:18.04:LTSgraphicsmagick0, 1.3.26-15, 1.3.26-16

Timeline

References

Open in Interactive Console →