Loading
Generated remediation guidance and an executive summary. No account required.
The DrawImage function in magick/render.c in GraphicsMagick 1.3.26 does not properly look for pop keywords that are associated with push keywords, which allows remote attackers to cause a denial of service (negative strncpy and application crash) or possibly have unspecified other impact via a crafted file.
Use CWE-20, Graphicsmagick vendor hub and Graphicsmagick product page to widen CVE-2017-16547 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2020-10938, CVE-2019-19951 and CVE-2019-19950 for nearby disclosures in the same product family.