CVE-2016-7446: Debian Linux
Critical severity, CVSS 9.8. EPSS: 4% chance of exploitation in the next 30 days.
Buffer overflow in the MVG and SVG rendering code in GraphicsMagick 1.3.24 allows remote attackers to have unspecified impact via unknown vectors. Note: This vulnerability exists due to an incomplete patch for CVE-2016-2317.
Affected products
- Debian Debian Linux: version 8.0 only
- Graphicsmagick Graphicsmagick: version 1.3.24 only
- Opensuse Leap: version 42.1 only
- Opensuse Opensuse: version 13.2 only
Published 2017-02-06. Last modified 2026-06-17.