CVE-2017-13063: Buffer Overflow
Published Aug 22, 2017
·Updated
GraphicsMagick 1.3.26 has a heap-based buffer overflow vulnerability in the function GetStyleTokens in coders/svg.c:314:12.
Affected Software
4 affected componentsFixes available
GraphicsMagick Graphicsmagick=1.3.26
Debian Debian Linux=8.0
Debian Debian Linux=9.0
debian/graphicsmagick
1.4+really1.3.36+hg16481-2+deb11u11.4+really1.3.40-4+deb12u11.4+really1.3.45+hg17696-11.4+really1.3.46-2
Event History
Aug 22, 2017
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Feb 19, 2026
Data Sourced
via Ubuntu·08:20 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Debian·08:21 PM
DescriptionAffected Software
Data Sourced
via Launchpad·08:21 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this GraphicsMagick vulnerability?
The vulnerability ID for this GraphicsMagick vulnerability is CVE-2017-13063.
2
What is the severity level of CVE-2017-13063?
The severity level of CVE-2017-13063 is medium.
3
Which function is vulnerable in GraphicsMagick 1.3.26?
The function GetStyleTokens in coders/svg.c:314:12 is vulnerable in GraphicsMagick 1.3.26.
4
Which software versions are affected by CVE-2017-13063?
GraphicsMagick 1.3.26 is affected, as well as various Debian and Ubuntu versions.
5
How can I fix the CVE-2017-13063 vulnerability?
You can fix the CVE-2017-13063 vulnerability by updating to the recommended versions of GraphicsMagick provided by Debian or Ubuntu.