CVE-2017-12435
- EPSS 0.89%
- Veröffentlicht 04.08.2017 10:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadSUNImage in coders/sun.c, which allows attackers to cause a denial of service.
CVE-2017-12427
- EPSS 0.61%
- Veröffentlicht 04.08.2017 09:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The ProcessMSLScript function in coders/msl.c in ImageMagick before 6.9.9-5 and 7.x before 7.0.6-5 allows remote attackers to cause a denial of service (memory leak) via a crafted file, related to the WriteMSLImage function.
CVE-2017-12418
- EPSS 0.24%
- Veröffentlicht 04.08.2017 00:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
ImageMagick 7.0.6-5 has memory leaks in the parse8BIMW and format8BIM functions in coders/meta.c, related to the WriteImage function in MagickCore/constitute.c.
CVE-2017-12140
- EPSS 0.96%
- Veröffentlicht 02.08.2017 05:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The ReadDCMImage function in coders\dcm.c in ImageMagick 7.0.6-1 has an integer signedness error leading to excessive memory consumption via a crafted DCM file.
CVE-2017-11752
- EPSS 0.18%
- Veröffentlicht 30.07.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The ReadMAGICKImage function in coders/magick.c in ImageMagick 7.0.6-4 allows remote attackers to cause a denial of service (memory leak) via a crafted file.
CVE-2017-11753
- EPSS 0.53%
- Veröffentlicht 30.07.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The GetImageDepth function in MagickCore/attribute.c in ImageMagick 7.0.6-4 might allow remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted Flexible Image Transport System (FITS) file.
CVE-2017-11754
- EPSS 0.53%
- Veröffentlicht 30.07.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The WritePICONImage function in coders/xpm.c in ImageMagick 7.0.6-4 allows remote attackers to cause a denial of service (memory leak) via a crafted file that is mishandled in an OpenPixelCache call.
CVE-2017-11755
- EPSS 0.53%
- Veröffentlicht 30.07.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The WritePICONImage function in coders/xpm.c in ImageMagick 7.0.6-4 allows remote attackers to cause a denial of service (memory leak) via a crafted file that is mishandled in an AcquireSemaphoreInfo call.
CVE-2017-11750
- EPSS 0.53%
- Veröffentlicht 30.07.2017 17:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The ReadOneJNGImage function in coders/png.c in ImageMagick 6.9.9-4 and 7.0.6-4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.
CVE-2017-11751
- EPSS 0.53%
- Veröffentlicht 30.07.2017 17:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The WritePICONImage function in coders/xpm.c in ImageMagick 7.0.6-4 allows remote attackers to cause a denial of service (memory leak) via a crafted file.