OESA-2023-1817

Source
https://www.openeuler.org/en/security/security-bulletins/detail/?id=openEuler-SA-2023-1817
Import Source
https://repo.openeuler.org/security/data/osv/OESA-2023-1817.json
JSON Data
https://api.test.osv.dev/v1/vulns/OESA-2023-1817
Upstream
Published
2023-11-17T11:06:16Z
Modified
2025-08-12T05:05:38.898232Z
Summary
GraphicsMagick security update
Details

GraphicsMagick is the swiss army knife of image processing. Comprised of 267K physical lines (according to David A. Wheeler's SLOCCount) of source code in the base package (or 1,225K including 3rd party libraries) it provides a robust and efficient collection of tools and libraries which support reading, writing, and manipulating an image in over 89 major formats including important formats like DPX, GIF, JPEG, JPEG-2000, PNG, PDF, PNM, TIFF, and WebP.

Security Fix(es):

Buffer Overflow vulnerability in WritePCXImage function in pcx.c in GraphicsMagick 1.4 allows remote attackers to cause a denial of service via converting of crafted image file to pcx format.(CVE-2020-21679)

Database specific
{
    "severity": "Medium"
}
References

Affected packages

openEuler:20.03-LTS-SP3 / GraphicsMagick

Package

Name
GraphicsMagick
Purl
pkg:rpm/openEuler/GraphicsMagick&distro=openEuler-20.03-LTS-SP3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.3.41-1.oe1

Ecosystem specific

{
    "aarch64": [
        "GraphicsMagick-debugsource-1.3.41-1.oe1.aarch64.rpm",
        "GraphicsMagick-perl-1.3.41-1.oe1.aarch64.rpm",
        "GraphicsMagick-c++-1.3.41-1.oe1.aarch64.rpm",
        "GraphicsMagick-devel-1.3.41-1.oe1.aarch64.rpm",
        "GraphicsMagick-1.3.41-1.oe1.aarch64.rpm",
        "GraphicsMagick-c++-devel-1.3.41-1.oe1.aarch64.rpm",
        "GraphicsMagick-debuginfo-1.3.41-1.oe1.aarch64.rpm"
    ],
    "x86_64": [
        "GraphicsMagick-1.3.41-1.oe1.x86_64.rpm",
        "GraphicsMagick-devel-1.3.41-1.oe1.x86_64.rpm",
        "GraphicsMagick-debuginfo-1.3.41-1.oe1.x86_64.rpm",
        "GraphicsMagick-c++-devel-1.3.41-1.oe1.x86_64.rpm",
        "GraphicsMagick-debugsource-1.3.41-1.oe1.x86_64.rpm",
        "GraphicsMagick-c++-1.3.41-1.oe1.x86_64.rpm",
        "GraphicsMagick-perl-1.3.41-1.oe1.x86_64.rpm"
    ],
    "noarch": [
        "GraphicsMagick-help-1.3.41-1.oe1.noarch.rpm"
    ],
    "src": [
        "GraphicsMagick-1.3.41-1.oe1.src.rpm"
    ]
}