CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AI Score
Confidence
Low
EPSS
Percentile
96.5%
It was discovered that GraphicsMagick incorrectly handled certain image files.
An attacker could possibly use this issue to cause a denial of service.
(CVE-2017-10794, CVE-2017-10799, CVE-2017-11102, CVE-2017-11140,
CVE-2017-11403, CVE-2017-11636, CVE-2017-11637, CVE-2017-13147, CVE-2017-14042,
CVE-2017-6335)
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Ubuntu | 16.04 | noarch | graphicsmagick | < 1.3.23-1ubuntu0.2 | UNKNOWN |
Ubuntu | 16.04 | noarch | graphicsmagick-dbg | < 1.3.23-1ubuntu0.2 | UNKNOWN |
Ubuntu | 16.04 | noarch | graphicsmagick-dbgsym | < 1.3.23-1ubuntu0.2 | UNKNOWN |
Ubuntu | 16.04 | noarch | graphicsmagick-imagemagick-compat | < 1.3.23-1ubuntu0.2 | UNKNOWN |
Ubuntu | 16.04 | noarch | graphicsmagick-libmagick-dev-compat | < 1.3.23-1ubuntu0.2 | UNKNOWN |
Ubuntu | 16.04 | noarch | libgraphics-magick-perl | < 1.3.23-1ubuntu0.2 | UNKNOWN |
Ubuntu | 16.04 | noarch | libgraphics-magick-perl-dbgsym | < 1.3.23-1ubuntu0.2 | UNKNOWN |
Ubuntu | 16.04 | noarch | libgraphicsmagick++-q16-12 | < 1.3.23-1ubuntu0.2 | UNKNOWN |
Ubuntu | 16.04 | noarch | libgraphicsmagick++-q16-12-dbgsym | < 1.3.23-1ubuntu0.2 | UNKNOWN |
Ubuntu | 16.04 | noarch | libgraphicsmagick++1-dev | < 1.3.23-1ubuntu0.2 | UNKNOWN |
ubuntu.com/security/CVE-2017-10794
ubuntu.com/security/CVE-2017-10799
ubuntu.com/security/CVE-2017-11102
ubuntu.com/security/CVE-2017-11140
ubuntu.com/security/CVE-2017-11403
ubuntu.com/security/CVE-2017-11636
ubuntu.com/security/CVE-2017-11637
ubuntu.com/security/CVE-2017-13147
ubuntu.com/security/CVE-2017-14042
ubuntu.com/security/CVE-2017-6335
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:P/I:P/A:P
CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
AI Score
Confidence
Low
EPSS
Percentile
96.5%