/
DirectorySecurity AdvisoriesPricing
Sign in
Security Advisories

CVE-2025-27796

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2025-27796

Severity

Unknown

Description

ReadWPGImage in WPG in GraphicsMagick before 1.3.46 mishandles palette buffer allocation, resulting in out-of-bounds access to heap memory in ReadBlob.

References

  • https://images.chainguard.dev/security/CGA-gq98-cg8x-365v

Affected packages


The trusted source for open source

Talk to an expert
© 2025 Chainguard. All Rights Reserved.
PrivacyTerms

Product

Chainguard ContainersChainguard LibrariesChainguard VMsIntegrationsPricing