CVE-2020-21679Out-of-bounds Write in Graphicsmagick

Severity
5.5MEDIUMNVD
EPSS
0.1%
top 69.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 22

Description

Buffer Overflow vulnerability in WritePCXImage function in pcx.c in GraphicsMagick 1.4 allows remote attackers to cause a denial of service via converting of crafted image file to pcx format.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

Debiangraphicsmagick/graphicsmagick< 1.4+really1.3.34+hg16181-1+3

🔴Vulnerability Details

3
GHSA
GHSA-5c8v-qg3w-p36f: Buffer Overflow vulnerability in WritePCXImage function in pcx2023-08-22
OSV
CVE-2020-21679: Buffer Overflow vulnerability in WritePCXImage function in pcx2023-08-22
CVEList
CVE-2020-21679: Buffer Overflow vulnerability in WritePCXImage function in pcx2023-08-22

📋Vendor Advisories

1
Debian
CVE-2020-21679: graphicsmagick - Buffer Overflow vulnerability in WritePCXImage function in pcx.c in GraphicsMagi...2020