CVE-2017-14504: Null Pointer Dereference
Last updated 25 August 2025
Other sources
ReadPNMImage in coders/pnm.c in GraphicsMagick 1.3.26 does not ensure the correct number of colors for the XV 332 format, leading to a NULL Pointer Dereference.
— Launchpad
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2017-14504?
CVE-2017-14504 is a vulnerability in GraphicsMagick 1.3.26 that allows a NULL Pointer Dereference due to incorrect handling of colors.
What is the severity of CVE-2017-14504?
CVE-2017-14504 has a severity rating of medium (6.5).
How does CVE-2017-14504 affect GraphicsMagick?
CVE-2017-14504 affects GraphicsMagick 1.3.26, potentially leading to a NULL Pointer Dereference.
What is the remedy for CVE-2017-14504?
The remedy for CVE-2017-14504 is to update GraphicsMagick to version 1.3.23-1ubuntu0.4 (for Ubuntu), 1.3.18-1ubuntu3.1+ (for Trusty), or 1.4+really1.3.35-1~deb10u2 (for Debian) or a later version.
Where can I find more information about CVE-2017-14504?
You can find more information about CVE-2017-14504 at the following references: [link1], [link2], [link3].