Known vulnerabilities in graphicsmagick (Alpine package)

Software CPE: cpe:2.3:o:alpine:graphicsmagick_alpine_package:*:*:*:*:*:alpine_linux:*:*
Total vulnerabilities: 81
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting graphicsmagick (Alpine package) graphicsmagick (Alpine package) is affected by 81 known vulnerabilities: 25 high, 25 medium, 31 low Critical High Medium Low

Vulnerabilities (81)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU27562 - Heap-based Buffer Overflow
CVE-2020-12672
CWE-122 High
No
No
1.3.35-r2 06.05.2020 SB2020050608
SB2020060801
SB2020061042
and 5 more
#VU26485 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2019-12921
CWE-22 Medium
Available
No
1.3.35-r0 31.03.2020 SB2020033119
SB2019042402
SB2020033121
and 3 more
#VU26484 - Integer overflow
CVE-2020-10938
CWE-190 High
No
No
1.3.35-r0, 1.3.35-r2 31.03.2020 SB2020033118
SB2020033119
SB2020033121
and 3 more
#VU15706 - Memory corruption
CVE-2017-10800
CWE-119 Low
No
No
- 04.11.2018 SB2017070313
SB2019061641
SB2017070525
and 4 more
#VU15705 - Out-of-bounds read
CVE-2017-10799
CWE-125 Low
No
No
- 04.11.2018 SB2017070312
SB2017121222
SB2019061640
and 5 more
#VU15557 - Buffer overflow
CVE-2017-10794
CWE-120 Low
No
No
- 29.10.2018 SB2018102912
SB2019061639
SB2017070525
and 4 more
#VU12713 - Missing release of memory after effective lifetime
CVE-2017-13066
CWE-401 Low
No
No
- 15.05.2018 SB2017081114
SB2019061649
SB2018010822
and 2 more
#VU12712 - Missing release of memory after effective lifetime
CVE-2017-11641
CWE-401 Low
No
No
- 14.05.2018 SB2017081114
SB2019061647
SB2018030721
and 4 more
#VU9797 - Buffer over-read
CVE-2017-13134
CWE-126 Low
No
No
- 27.12.2017 SB2017122214
SB2017122004
SB2017122005
and 2 more
#VU33204 - Use After Free
CVE-2017-15238
CWE-416 High
No
No
- 11.10.2017 SB2017101125
SB2019061654
SB2019061729
and 3 more
#VU33201 - Use After Free
CVE-2017-13737
CWE-416 Medium
No
No
- 29.08.2017 SB2017082909
SB2017120616
SB2019061653
and 4 more
#VU33724 - Improper input validation
CVE-2017-13736
CWE-20 Medium
No
No
- 29.08.2017 SB2017082911
SB2019061652
SB2019061729
and 3 more
#VU33200 - Improper input validation
CVE-2017-13147
CWE-20 High
No
No
- 23.08.2017 SB2017082316
SB2019061651
SB2018030721
and 4 more
#VU33192 - Memory corruption
CVE-2017-11636
CWE-119 High
No
No
- 26.07.2017 SB2017072605
SB2019061644
SB2018030721
and 4 more
#VU33193 - NULL Pointer Dereference
CVE-2017-11637
CWE-476 High
No
No
- 26.07.2017 SB2017072606
SB2019061645
SB2018030721
and 4 more
#VU33194 - Improper input validation
CVE-2017-11638
CWE-20 High
No
No
- 26.07.2017 SB2017072607
SB2019061646
SB2019061729
and 3 more
#VU33195 - Memory corruption
CVE-2017-11643
CWE-119 High
No
No
- 26.07.2017 SB2017072608
SB2019061648
SB2018030721
and 4 more
#VU33189 - Double Free
CVE-2017-11139
CWE-415 High
No
No
- 10.07.2017 SB2017071004
SB2019061642
SB2018030721
and 4 more
#VU33190 - Resource exhaustion
CVE-2017-11140
CWE-400 Low
No
No
- 10.07.2017 SB2017071005
SB2019061643
SB2018030721
and 4 more
#VU33187 - Improper input validation
CVE-2016-9830
CWE-20 Low
No
No
- 01.03.2017 SB2017030112
SB2019061638
SB2017042019
and 4 more


Showing elements 1 - 20 out of 81