CVE-2017-18272
- EPSS 0.41%
- Veröffentlicht 18.05.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:44
In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-25, there is a use-after-free in ReadOneMNGImage in coders/png.c, which allows attackers to cause a denial of service via a crafted MNG image file that is mishandled in an MngInfoDiscardObject call.
CVE-2017-18273
- EPSS 0.21%
- Veröffentlicht 18.05.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:44
In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-22, an infinite loop vulnerability was found in the function ReadTXTImage in coders/txt.c, which allows attackers to cause a denial of service (CPU exhaustion) via a crafted image file that is mishandled in ...
CVE-2018-11251
- EPSS 0.31%
- Veröffentlicht 18.05.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:42:59
In ImageMagick 7.0.7-23 Q16 x86_64 2018-01-24, there is a heap-based buffer over-read in ReadSUNImage in coders/sun.c, which allows attackers to cause a denial of service (application crash in SetGrayscaleImage in MagickCore/quantize.c) via a crafted...
CVE-2018-10804
- EPSS 0.1%
- Veröffentlicht 08.05.2018 07:29:00
- Zuletzt bearbeitet 21.11.2024 03:42:03
ImageMagick version 7.0.7-28 contains a memory leak in WriteTIFFImage in coders/tiff.c.
CVE-2018-10805
- EPSS 0.14%
- Veröffentlicht 08.05.2018 07:29:00
- Zuletzt bearbeitet 21.11.2024 03:42:03
ImageMagick version 7.0.7-28 contains a memory leak in ReadYCBCRImage in coders/ycbcr.c.
CVE-2018-10177
- EPSS 0.33%
- Veröffentlicht 16.04.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:40:57
In ImageMagick 7.0.7-28, there is an infinite loop in the ReadOneMNGImage function of the coders/png.c file. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted mng file.
CVE-2018-9133
- EPSS 0.32%
- Veröffentlicht 30.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:15:02
ImageMagick 7.0.7-26 Q16 has excessive iteration in the DecodeLabImage and EncodeLabImage functions (coders/tiff.c), which results in a hang (tens of minutes) with a tiny PoC file. Remote attackers could leverage this vulnerability to cause a denial ...
CVE-2018-9135
- EPSS 0.3%
- Veröffentlicht 30.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:15:02
In ImageMagick 7.0.7-24 Q16, there is a heap-based buffer over-read in IsWEBPImageLossless in coders/webp.c.
CVE-2017-18250
- EPSS 0.38%
- Veröffentlicht 27.03.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:41
An issue was discovered in ImageMagick 7.0.7. A NULL pointer dereference vulnerability was found in the function LogOpenCLBuildFailure in MagickCore/opencl.c, which allows attackers to cause a denial of service via a crafted file.
CVE-2017-18251
- EPSS 0.34%
- Veröffentlicht 27.03.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:41
An issue was discovered in ImageMagick 7.0.7. A memory leak vulnerability was found in the function ReadPCDImage in coders/pcd.c, which allow remote attackers to cause a denial of service via a crafted file.