CVE-2014-1947
- EPSS 6.95%
- Published 17.02.2020 21:15:12
- Last modified 21.11.2024 02:05:19
Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick 6.5.4 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number of layers in a PSD image, i...
CVE-2014-1958
- EPSS 1.14%
- Published 06.02.2020 15:15:10
- Last modified 21.11.2024 02:05:21
Buffer overflow in the DecodePSDPixels function in coders/psd.c in ImageMagick before 6.8.8-5 might allow remote attackers to execute arbitrary code via a crafted PSD image, involving the L%06ld string, a different vulnerability than CVE-2014-2030.
CVE-2014-2030
- EPSS 18.79%
- Published 06.02.2020 15:15:10
- Last modified 21.11.2024 02:05:29
Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick, possibly 6.8.8-5, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PSD image, involving the L%06ld...
CVE-2016-7523
- EPSS 0.36%
- Published 06.02.2020 14:15:10
- Last modified 21.11.2024 02:58:08
coders/meta.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
CVE-2016-7524
- EPSS 0.98%
- Published 06.02.2020 14:15:10
- Last modified 21.11.2024 02:58:08
coders/meta.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
CVE-2019-19948
- EPSS 0.53%
- Published 24.12.2019 01:15:11
- Last modified 21.11.2024 04:35:43
In ImageMagick 7.0.8-43 Q16, there is a heap-based buffer overflow in the function WriteSGIImage of coders/sgi.c.
CVE-2019-19949
- EPSS 0.32%
- Published 24.12.2019 01:15:11
- Last modified 21.11.2024 04:35:43
In ImageMagick 7.0.8-43 Q16, there is a heap-based buffer over-read in the function WritePNGImage of coders/png.c, related to Magick_png_write_raw_profile and LocaleNCompare.
CVE-2019-19952
- EPSS 0.46%
- Published 24.12.2019 01:15:11
- Last modified 21.11.2024 04:35:43
In ImageMagick 7.0.9-7 Q16, there is a use-after-free in the function MngInfoDiscardObject of coders/png.c, related to ReadOneMNGImage.
CVE-2014-8561
- EPSS 1.04%
- Published 15.12.2019 22:15:11
- Last modified 21.11.2024 02:19:20
imagemagick 6.8.9.6 has remote DOS via infinite loop
CVE-2019-18853
- EPSS 0.57%
- Published 11.11.2019 15:15:12
- Last modified 21.11.2024 04:33:42
ImageMagick before 7.0.9-0 allows remote attackers to cause a denial of service because XML_PARSE_HUGE is not properly restricted in coders/svg.c, related to SVG and libxml2.