CVE-2013-4589Graphicsmagick vulnerability

6 documents6 sources
Severity
4.3MEDIUMNVD
EPSS
2.5%
top 14.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 23
Latest updateMay 17

Description

The ExportAlphaQuantumType function in export.c in GraphicsMagick before 1.3.18 might allow remote attackers to cause a denial of service (crash) via vectors related to exporting the alpha of an 8-bit RGBA image.

CVSS vector

AV:N/AC:M/C:N/I:N/A:PExploitability: 8.6 | Impact: 2.9

Patches

🔴Vulnerability Details

3
GHSA
GHSA-vj5h-42mr-vg2g: The ExportAlphaQuantumType function in export2022-05-17
OSV
CVE-2013-4589: The ExportAlphaQuantumType function in export2013-11-23
CVEList
CVE-2013-4589: The ExportAlphaQuantumType function in export2013-11-23

📋Vendor Advisories

1
Debian
CVE-2013-4589: graphicsmagick - The ExportAlphaQuantumType function in export.c in GraphicsMagick before 1.3.18 ...2013

💬Community

1
Bugzilla
CVE-2013-4589 graphicsmagick: 8-bit RGBA images export DoS vulnerability2013-10-15
CVE-2013-4589 — Graphicsmagick vulnerability | cvebase