Loading
Generated remediation guidance and an executive summary. No account required.
In GraphicsMagick 1.4 snapshot-20190322 Q8, there is a stack-based buffer overflow in the function SVGStartElement of coders/svg.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a quoted font family value.
Use CWE-787, Graphicsmagick vendor hub and Graphicsmagick product page to widen CVE-2019-11005 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2020-10938, CVE-2019-19951 and CVE-2019-19950 for nearby disclosures in the same product family.