Monthly Archives: September 2017

graphicsmagick: use-after-free in CloseBlob (blob.c) (INCOMPLETE FIX FOR CVE-2017-11403)

Description: graphicsmagick is a collection of tools and libraries for many image formats. After some test I realized that the fix for CVE-2017-11403 was not enough, see also: graphicsmagick: use-after-free in CloseBlob (blob.c) The complete ASan output of the issue: … Continue reading

Posted in advisories, security | 1 Comment