cve/2016/CVE-2016-2317.md
2024-06-18 02:51:15 +02:00

754 B

CVE-2016-2317

Description

Multiple buffer overflows in GraphicsMagick 1.3.23 allow remote attackers to cause a denial of service (crash) via a crafted SVG file, related to the (1) TracePoint function in magick/render.c, (2) GetToken function in magick/utility.c, and (3) GetTransformTokens function in coders/svg.c.

POC

Reference

Github