Buffer Overflow Vulnerability in GraphicsMagick by GraphicsMagick Team
CVE-2020-21679

5.5MEDIUM

Key Information:

Vendor
CVE Published:
22 August 2023

What is CVE-2020-21679?

A buffer overflow vulnerability exists in the WritePCXImage function located within pcx.c of GraphicsMagick version 1.4. This flaw enables remote attackers to craft malicious image files that, when converted to PCX format, can trigger denial of service conditions. The manipulation of image processing could potentially disrupt services relying on this functionality, necessitating prompt attention to ensure system integrity and availability.

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.