USN-7433-1: GraphicsMagick vulnerabilities
It was discovered that GraphicsMagick did not properly limit image dimensions, which could lead to excessive memory consumption. An attacker could possibly use this issue to cause a denial of service. (CVE-2025-27795) It was discovered that GraphicsMagick did not properly handle certain memory operations, which could lead to a out-of-bounds memory access. An attacker could possibly use this issue to leak sensitive information. This issue only affected Ubuntu 24.10. (CVE-2025-27796)
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-7433-1?
USN-7433-1 is classified as a denial of service vulnerability due to improper image dimension limitations in GraphicsMagick.
How do I fix USN-7433-1?
To fix USN-7433-1, upgrade GraphicsMagick to version 1.4+really1.3.45-1ubuntu0.1 or newer.
What products are affected by USN-7433-1?
USN-7433-1 affects the GraphicsMagick package in specific versions of Ubuntu, including 24.10, 24.04, and 22.04.
What is GraphicsMagick and why is USN-7433-1 important?
GraphicsMagick is an image processing software, and USN-7433-1 is important because it addresses a security flaw that can lead to excessive memory consumption.
What can happen if USN-7433-1 is not addressed?
If USN-7433-1 is not addressed, it could lead to a denial of service, causing systems using GraphicsMagick to become unresponsive.