Heap-based Buffer Over-read in GraphicsMagick Affects Multiple Versions
CVE-2017-17915
8.8HIGH
What is CVE-2017-17915?
The vulnerability in GraphicsMagick 1.4 snapshot-20171217 Q8 stems from a heap-based buffer over-read in the ReadMNGImage function within the PNG coder component. This issue occurs when the program accesses memory before confirming that the specified limit for reading has been reached. As a result, it could potentially allow for unauthorized access to sensitive data in memory, posing significant risks to system integrity and security.
