CVE-2019-11506

In GraphicsMagick from version 1.3.30 to 1.4 snapshot-20190403 Q8, there is a heap-based buffer overflow in the function WriteMATLABImage of coders/mat.c, which allows an attacker to cause a denial of service or possibly have unspecified other impact via a crafted image file. This is related to ExportRedQuantumType in magick/export.c.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:graphicsmagick:graphicsmagick:1.3.30:*:*:*:*:*:*:*
cpe:2.3:a:graphicsmagick:graphicsmagick:1.3.31:*:*:*:*:*:*:*

Information

Published : 2019-04-24 21:29

Updated : 2020-08-24 17:37


NVD link : CVE-2019-11506

Mitre link : CVE-2019-11506


JSON object : View

Products Affected

graphicsmagick

  • graphicsmagick
CWE
CWE-787

Out-of-bounds Write