CVE-2018-10805
- EPSS 0.13%
- Veröffentlicht 08.05.2018 07:29:00
- Zuletzt bearbeitet 21.11.2024 03:42:03
ImageMagick version 7.0.7-28 contains a memory leak in ReadYCBCRImage in coders/ycbcr.c.
CVE-2018-10177
- EPSS 0.14%
- Veröffentlicht 16.04.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:40:57
In ImageMagick 7.0.7-28, there is an infinite loop in the ReadOneMNGImage function of the coders/png.c file. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted mng file.
CVE-2018-9133
- EPSS 0.1%
- Veröffentlicht 30.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:15:02
ImageMagick 7.0.7-26 Q16 has excessive iteration in the DecodeLabImage and EncodeLabImage functions (coders/tiff.c), which results in a hang (tens of minutes) with a tiny PoC file. Remote attackers could leverage this vulnerability to cause a denial ...
CVE-2018-9135
- EPSS 0.34%
- Veröffentlicht 30.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:15:02
In ImageMagick 7.0.7-24 Q16, there is a heap-based buffer over-read in IsWEBPImageLossless in coders/webp.c.
CVE-2017-18250
- EPSS 0.38%
- Veröffentlicht 27.03.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:41
An issue was discovered in ImageMagick 7.0.7. A NULL pointer dereference vulnerability was found in the function LogOpenCLBuildFailure in MagickCore/opencl.c, which allows attackers to cause a denial of service via a crafted file.
CVE-2017-18251
- EPSS 0.23%
- Veröffentlicht 27.03.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:41
An issue was discovered in ImageMagick 7.0.7. A memory leak vulnerability was found in the function ReadPCDImage in coders/pcd.c, which allow remote attackers to cause a denial of service via a crafted file.
CVE-2017-18252
- EPSS 0.13%
- Veröffentlicht 27.03.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:41
An issue was discovered in ImageMagick 7.0.7. The MogrifyImageList function in MagickWand/mogrify.c allows attackers to cause a denial of service (assertion failure and application exit in ReplaceImageInList) via a crafted file.
CVE-2017-18253
- EPSS 0.38%
- Veröffentlicht 27.03.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:41
An issue was discovered in ImageMagick 7.0.7. A NULL pointer dereference vulnerability was found in the function LoadOpenCLDevices in MagickCore/opencl.c, which allows attackers to cause a denial of service via a crafted file.
CVE-2017-18254
- EPSS 0.23%
- Veröffentlicht 27.03.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:41
An issue was discovered in ImageMagick 7.0.7. A memory leak vulnerability was found in the function WriteGIFImage in coders/gif.c, which allow remote attackers to cause a denial of service via a crafted file.
CVE-2018-8960
- EPSS 0.37%
- Veröffentlicht 23.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:41
The ReadTIFFImage function in coders/tiff.c in ImageMagick 7.0.7-26 Q16 does not properly restrict memory allocation, leading to a heap-based buffer over-read.