CVE-2025-27796

Publication date 7 March 2025

Last updated 14 April 2025


Ubuntu priority

ReadWPGImage in WPG in GraphicsMagick before 1.3.46 mishandles palette buffer allocation, resulting in out-of-bounds access to heap memory in ReadBlob.

Status

Package Ubuntu Release Status
graphicsmagick 24.10 oracular
Fixed 1.4+really1.3.45-1ubuntu0.1
24.04 LTS noble
Not affected
22.04 LTS jammy
Not affected
20.04 LTS focal
Not affected
18.04 LTS bionic
Not affected
16.04 LTS xenial
Not affected
14.04 LTS trusty
Not affected