Imagemagick

Imagemagick

725 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.17%
  • Veröffentlicht 24.02.2022 19:15:09
  • Zuletzt bearbeitet 21.11.2024 06:21:55

A NULL pointer dereference flaw was found in ImageMagick in versions prior to 7.0.10-31 in ReadSVGImage() in coders/svg.c. This issue is due to not checking the return value from libxml2's xmlCreatePushParserCtxt() and uses the value directly, which ...

  • EPSS 0.18%
  • Veröffentlicht 24.02.2022 19:15:09
  • Zuletzt bearbeitet 26.01.2026 17:16:08

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation faul...

  • EPSS 0.31%
  • Veröffentlicht 19.11.2021 17:15:08
  • Zuletzt bearbeitet 21.11.2024 06:23:14

A flaw was found in ImageMagick where it did not properly sanitize certain input before using it to invoke convert processes. This flaw allows an attacker to create a specially crafted image that leads to a use-after-free vulnerability when processed...

  • EPSS 0.02%
  • Veröffentlicht 13.09.2021 18:15:23
  • Zuletzt bearbeitet 21.11.2024 06:18:54

ImageMagick is free software delivered as a ready-to-run binary distribution or as source code that you may use, copy, modify, and distribute in both open and proprietary applications. In affected versions and in certain cases, Postscript files could...

  • EPSS 0.08%
  • Veröffentlicht 14.05.2021 20:15:11
  • Zuletzt bearbeitet 21.11.2024 05:21:48

In ImageMagick versions before 7.0.9-0, there are outside the range of representable values of type 'float' at MagickCore/quantize.c.

  • EPSS 0.24%
  • Veröffentlicht 11.05.2021 23:15:08
  • Zuletzt bearbeitet 21.11.2024 05:46:20

A flaw was found in ImageMagick in versions before 7.0.11 and before 6.9.12, where a division by zero in WaveImage() of MagickCore/visual-effects.c may trigger undefined behavior via a crafted image file submitted to an application using ImageMagick....

  • EPSS 0.4%
  • Veröffentlicht 11.05.2021 23:15:08
  • Zuletzt bearbeitet 21.11.2024 05:46:20

A flaw was found in ImageMagick in versions before 7.0.11, where a division by zero ConvertXYZToJzazbz() of MagickCore/colorspace.c may trigger undefined behavior via a crafted image file that is submitted by an attacker and processed by an applicati...

  • EPSS 0.13%
  • Veröffentlicht 11.05.2021 23:15:08
  • Zuletzt bearbeitet 21.11.2024 05:46:21

A flaw was found in ImageMagick in versions before 7.0.11, where a division by zero in sRGBTransformImage() in the MagickCore/colorspace.c may trigger undefined behavior via a crafted image file that is submitted by an attacker processed by an applic...

  • EPSS 0.11%
  • Veröffentlicht 11.05.2021 23:15:08
  • Zuletzt bearbeitet 21.11.2024 05:46:21

A flaw was found in ImageMagick in versions 7.0.11, where an integer overflow in WriteTHUMBNAILImage of coders/thumbnail.c may trigger undefined behavior via a crafted image file that is submitted by an attacker and processed by an application using ...

  • EPSS 0.24%
  • Veröffentlicht 11.05.2021 23:15:08
  • Zuletzt bearbeitet 21.11.2024 05:46:21

A flaw was found in ImageMagick in versions before 7.0.11. A potential cipher leak when the calculate signatures in TransformSignature is possible. The highest threat from this vulnerability is to data confidentiality.