{"id":"UBUNTU-CVE-2025-27796","details":"ReadWPGImage in WPG in GraphicsMagick before 1.3.46 mishandles palette buffer allocation, resulting in out-of-bounds access to heap memory in ReadBlob.","modified":"2026-01-30T01:48:03.813401Z","published":"2025-03-07T06:15:00Z","withdrawn":"2025-07-16T05:23:41Z","related":["CVE-2025-27796","USN-7433-1"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2025-27796"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2025-27796"},{"type":"REPORT","url":"https://foss.heptapod.net/graphicsmagick/graphicsmagick/-/commit/883ebf8cae6dfa5873d975fe3476b1a188ef3f9f"},{"type":"REPORT","url":"http://www.graphicsmagick.org/NEWS.html"},{"type":"REPORT","url":"https://sourceforge.net/p/graphicsmagick/bugs/750/"},{"type":"REPORT","url":"https://ubuntu.com/security/notices/USN-7433-1"}],"affected":[{"package":{"name":"graphicsmagick","ecosystem":"Ubuntu:24.10","purl":"pkg:deb/ubuntu/graphicsmagick@1.4+really1.3.45-1ubuntu0.1?arch=source&distro=oracular"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.4+really1.3.45-1ubuntu0.1"}]}],"versions":["1.4+really1.3.42-1.1build3","1.4+really1.3.43-1","1.4+really1.3.43-1build1","1.4+really1.3.43-1build2","1.4+really1.3.43-1build4","1.4+really1.3.43-1build5","1.4+really1.3.44-1","1.4+really1.3.45-1"],"ecosystem_specific":{"binaries":[{"binary_name":"graphicsmagick","binary_version":"1.4+really1.3.45-1ubuntu0.1"},{"binary_name":"graphicsmagick-dbg","binary_version":"1.4+really1.3.45-1ubuntu0.1"},{"binary_name":"graphicsmagick-imagemagick-compat","binary_version":"1.4+really1.3.45-1ubuntu0.1"},{"binary_name":"graphicsmagick-libmagick-dev-compat","binary_version":"1.4+really1.3.45-1ubuntu0.1"},{"binary_name":"libgraphics-magick-perl","binary_version":"1.4+really1.3.45-1ubuntu0.1"},{"binary_version":"1.4+really1.3.45-1ubuntu0.1","binary_name":"libgraphicsmagick++-q16-12t64"},{"binary_name":"libgraphicsmagick++1-dev","binary_version":"1.4+really1.3.45-1ubuntu0.1"},{"binary_name":"libgraphicsmagick-q16-3t64","binary_version":"1.4+really1.3.45-1ubuntu0.1"},{"binary_name":"libgraphicsmagick1-dev","binary_version":"1.4+really1.3.45-1ubuntu0.1"}],"ubuntu_priority":"medium","availability":"No subscription required"},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-27796.json"}}],"schema_version":"1.7.3","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:L"}]}