ReadOneJNGImage in coders/png.c in GraphicsMagick version 1.3.26 does not properly validate JNG data, leading to a denial of service (assertion failure in magick/pixel_cache.c, and application crash).
References
Configurations
History
No history.
Information
Published : 2017-09-21 17:29
Updated : 2025-04-20 01:37
NVD link : CVE-2017-14649
Mitre link : CVE-2017-14649
CVE.ORG link : CVE-2017-14649
JSON object : View
Products Affected
graphicsmagick
- graphicsmagick
CWE
CWE-617
Reachable Assertion