Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26817
HistorySep 21, 2020 - 6:19 a.m.

Arbitrary Code Execution

2020-09-2106:19:47
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
18
graphicsmagick
arbitrary code execution
buffer over-read
png.c
host os security

EPSS

0.004

Percentile

74.2%

GraphicsMagick is vulnerable to arbitrary code execution. A heap-based buffer over-read in ReadOneJNGImage in coders/png.c allows an attacker to execute arbitrary code on the host OS.