JLSEC-2026-494 Medium 4.5
WPG in GraphicsMagick before 1.3.46 mishandles palette buffer allocation.
ReadWPGImage in WPG in GraphicsMagick before 1.3.46 mishandles palette buffer allocation, resulting in out-of-bounds access to heap memory in ReadBlob.
References
- http://www.graphicsmagick.org/NEWS.html
- https://foss.heptapod.net/graphicsmagick/graphicsmagick/-/commit/883ebf8cae6dfa5873d975fe3476b1a188ef3f9f
- https://github.com/advisories/GHSA-v5xf-gj23-85jx
- https://nvd.nist.gov/vuln/detail/CVE-2025-27796
- https://sourceforge.net/p/graphicsmagick/bugs/750
- https://sourceforge.net/p/graphicsmagick/bugs/750/