CVE-2019-11474

MEDIUM

GraphicsMagick 1.3.31 - DoS

Title source: llm

Description

coders/xwd.c in GraphicsMagick 1.3.31 allows attackers to cause a denial of service (floating-point exception and application crash) by crafting an XWD image file, a different vulnerability than CVE-2019-11008 and CVE-2019-11009.

Scores

CVSS v3 6.5
EPSS 0.0303
EPSS Percentile 86.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Classification

CWE
CWE-682 CWE-787
Status published

Affected Products (10)

graphicsmagick/graphicsmagick
fedoraproject/fedora
fedoraproject/fedora
debian/debian_linux
debian/debian_linux
debian/debian_linux
canonical/ubuntu_linux
opensuse/backports_sle
opensuse/leap
opensuse/leap

Timeline

Published Apr 23, 2019
Tracked Since Feb 18, 2026