CVE-2017-17498: Buffer Overflow
Last updated 25 August 2025
Other sources
WritePNMImage in coders/pnm.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (bitstream.c MagickBitStreamMSBWrite heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.
— Debian
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2017-17498?
CVE-2017-17498 is a vulnerability in GraphicsMagick 1.3.26 that allows remote attackers to cause a denial of service or possibly have other unspecified impacts via a crafted file.
How does CVE-2017-17498 affect GraphicsMagick?
CVE-2017-17498 affects GraphicsMagick versions 1.3.26.
What is the severity of CVE-2017-17498?
CVE-2017-17498 has a severity rating of 8.8 (high).
How can I fix CVE-2017-17498?
To fix CVE-2017-17498 in GraphicsMagick, upgrade to version 1.3.27-1 or higher.
Where can I find more information about CVE-2017-17498?
You can find more information about CVE-2017-17498 at the following references: http://hg.code.sf.net/p/graphicsmagick/code/rev/f1c418ef0260, https://sourceforge.net/p/graphicsmagick/bugs/525/, http://www.securityfocus.com/bid/102158.