VYPR

rpm package

suse/GraphicsMagick&distro=SUSE Linux Enterprise Module for Package Hub 15 SP6

pkg:rpm/suse/GraphicsMagick&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Package%20Hub%2015%20SP6

Vulnerabilities (2)

  • CVE-2025-32460Apr 9, 2025
    affected < 1.3.42-150600.3.7.1fixed 1.3.42-150600.3.7.1

    GraphicsMagick before 8e56520 has a heap-based buffer over-read in ReadJXLImage in coders/jxl.c, related to an ImportViewPixelArea call.

  • CVE-2025-27795Mar 7, 2025
    affected < 1.3.42-150600.3.4.1fixed 1.3.42-150600.3.4.1

    ReadJXLImage in JXL in GraphicsMagick before 1.3.46 lacks image dimension resource limits.