CVE-2005-1739: Medium severity GraphicsMagick Graphicsmagick vulnerability
The XWD Decoder in ImageMagick before 6.2.2.3, and GraphicsMagick before 1.1.6-r1, allows remote attackers to cause a denial of service (infinite loop) via an image with a zero color mask.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1739?
CVE-2005-1739 has a severity level associated with a denial of service risk due to an infinite loop.
How do I fix CVE-2005-1739?
To fix CVE-2005-1739, upgrade ImageMagick to version 6.2.2.3 or later and GraphicsMagick to version 1.1.6-r1 or later.
What systems are impacted by CVE-2005-1739?
CVE-2005-1739 affects ImageMagick versions prior to 6.2.2.3 and GraphicsMagick versions prior to 1.1.6-r1.
Is there any workaround for CVE-2005-1739?
Temporarily disabling processing of XWD images can serve as a workaround until updates are applied for CVE-2005-1739.
How does CVE-2005-1739 allow a denial of service attack?
CVE-2005-1739 enables a denial of service attack by causing an infinite loop when processing images with a zero color mask.