CVE-2016-7997: Graphicsmagick

High severity, CVSS 7.5. EPSS: 3.4% chance of exploitation in the next 30 days.

The WPG format reader in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (assertion failure and crash) via vectors related to a ReferenceBlob and a NULL pointer.

Affected products

Published 2017-01-18. Last modified 2026-06-17.