CVE-2017-15930: Null Pointer Dereference
In ReadOneJNGImage in coders/png.c in GraphicsMagick 1.3.26, a Null Pointer Dereference occurs while transferring JPEG scanlines, related to a PixelPacket pointer.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2017-15930?
CVE-2017-15930 is a vulnerability in GraphicsMagick 1.3.26 that causes a Null Pointer Dereference while transferring JPEG scanlines.
How severe is CVE-2017-15930?
CVE-2017-15930 has a severity score of 8.8 (high).
Which software versions are affected by CVE-2017-15930?
GraphicsMagick 1.3.26 is affected by CVE-2017-15930.
How do I fix CVE-2017-15930?
To fix CVE-2017-15930, update GraphicsMagick to a version that is not vulnerable.
Where can I find more information about CVE-2017-15930?
More information about CVE-2017-15930 can be found at the following references: - http://hg.graphicsmagick.org/hg/GraphicsMagick?cmd=changeset;node=6fc54b6d2be8 - http://hg.graphicsmagick.org/hg/GraphicsMagick?cmd=changeset;node=da135eaedc3b - https://sourceforge.net/p/graphicsmagick/bugs/518/