CVE-2017-11637: Null Pointer Dereference
Published Jul 26, 2017
·Updated
GraphicsMagick 1.3.26 has a NULL pointer dereference in the WritePCLImage() function in coders/pcl.c during writes of monochrome images.
Affected Software
2 affected componentsFixes available
GraphicsMagick Graphicsmagick=1.3.26
debian/graphicsmagick
1.4+really1.3.36+hg16481-2+deb11u11.4+really1.3.40-4+deb12u11.4+really1.3.45+hg17696-11.4+really1.3.46-2
Event History
Jul 26, 2017
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Data Sourced
via NVD·08:29 AM
DescriptionSeverityWeaknessAffected Software
Jan 11, 2024
Data Sourced
via Launchpad·10:26 PM
Description
Feb 20, 2026
Data Sourced
via Ubuntu·08:04 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Debian·08:04 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-11637?
CVE-2017-11637 is considered moderate in severity due to the potential for a denial of service caused by a NULL pointer dereference.
2
How do I fix CVE-2017-11637?
To fix CVE-2017-11637, update to a version of GraphicsMagick that is 1.4+really1.3.36+hg16481-2+deb11u1 or later.
3
What versions of GraphicsMagick are affected by CVE-2017-11637?
GraphicsMagick versions prior to 1.4+really1.3.36+hg16481-2+deb11u1 are affected by CVE-2017-11637.
4
What function is vulnerable in GraphicsMagick due to CVE-2017-11637?
The vulnerable function in GraphicsMagick due to CVE-2017-11637 is WritePCLImage() in the coders/pcl.c module.
5
Is CVE-2017-11637 specific to any operating system?
CVE-2017-11637 is primarily relevant to users of GraphicsMagick on Debian and Ubuntu systems.