CVE Database
/

CVE-2017-15277

Back to search

CVE-2017-15277

Published: Oct 12, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

ReadGIFImage in coders/gif.c in ImageMagick 7.0.6-1 and GraphicsMagick 1.3.26 leaves the palette uninitialized when processing a GIF file that has neither a global nor local palette. If the affected product is used as a library loaded into a process that operates on interesting data, this data sometimes can be leaked via the uninitialized palette.

VendorProductVersions

n/a

n/a

affected
n/a

References

DSA-4040
vendor-advisory
x_refsource_DEBIAN
USN-3681-1
vendor-advisory
x_refsource_UBUNTU
DSA-4321
vendor-advisory
x_refsource_DEBIAN
DSA-4032
vendor-advisory
x_refsource_DEBIAN
USN-4232-1
vendor-advisory
x_refsource_UBUNTU

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now