CVE-2017-10799: Medium severity GraphicsMagick Graphicsmagick vulnerability
Published Jul 3, 2017
·Updated
Last updated 25 August 2025
Other sources
When GraphicsMagick 1.3.25 processes a DPX image (with metadata indicating a large width) in coders/dpx.c, a denial of service (OOM) can occur in ReadDPXImage().
— Launchpad
Affected Software
2 affected componentsFixes available
GraphicsMagick Graphicsmagick=1.3.25
debian/graphicsmagick
1.4+really1.3.36+hg16481-2+deb11u11.4+really1.3.40-4+deb12u11.4+really1.3.45+hg17696-11.4+really1.3.46-2
Remediation
Patch Available
Event History
Jul 3, 2017
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Data Sourced
via NVD·01:29 AM
RemedyDescriptionSeverityWeaknessAffected Software
Jan 11, 2024
Data Sourced
via Launchpad·10:24 PM
Description
Feb 20, 2026
Data Sourced
via Ubuntu·08:04 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Debian·08:04 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-10799?
The severity of CVE-2017-10799 is classified as a denial of service (DoS) vulnerability.
2
How do I fix CVE-2017-10799?
To fix CVE-2017-10799, update GraphicsMagick to version 1.4+really1.3.36+hg16481-2+deb11u1 or later.
3
What version of GraphicsMagick is affected by CVE-2017-10799?
GraphicsMagick version 1.3.25 is affected by CVE-2017-10799.
4
What kind of vulnerability is CVE-2017-10799?
CVE-2017-10799 is a denial of service (OOM) vulnerability caused by processing specifically crafted DPX images.
5
Which software distributions contain the vulnerable version of GraphicsMagick related to CVE-2017-10799?
The vulnerable version of GraphicsMagick, 1.3.25, is found in specific packages within Debian distributions.