CVE-2016-7996: Graphicsmagick

Critical severity, CVSS 9.8. EPSS: 3.9% chance of exploitation in the next 30 days.

Heap-based buffer overflow in the WPG format reader in GraphicsMagick 1.3.25 and earlier allows remote attackers to have unspecified impact via a colormap with a large number of entries.

Affected products

Published 2017-01-18. Last modified 2026-06-17.