Imagemagick

Imagemagick

851 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.55%
  • Veröffentlicht 12.07.2017 15:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The ReadDPXImage function in coders\dpx.c in ImageMagick 7.0.6-0 has a large loop vulnerability that can cause CPU exhaustion via a crafted DPX file, related to lack of an EOF check.

  • EPSS 1.68%
  • Veröffentlicht 11.07.2017 20:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The ReadTGAImage function in coders\tga.c in ImageMagick 7.0.5-6 has a memory leak vulnerability that can cause memory exhaustion via invalid colors data in the header of a TGA or VST file.

  • EPSS 1.43%
  • Veröffentlicht 10.07.2017 18:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The ReadXWDImage function in coders\xwd.c in ImageMagick 7.0.5-6 has a memory leak vulnerability that can cause memory exhaustion via a crafted length (number of color-map entries) field in the header of an XWD file.

  • EPSS 1.67%
  • Veröffentlicht 10.07.2017 03:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The ReadMATImage function in coders\mat.c in ImageMagick 7.0.5-6 has a memory leak vulnerability that can cause memory exhaustion via a crafted MAT file, related to incorrect ordering of a SetImageExtent call.

  • EPSS 1.84%
  • Veröffentlicht 07.07.2017 16:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

The mng_get_long function in coders/png.c in ImageMagick 7.0.6-0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted MNG image.

Exploit
  • EPSS 3.58%
  • Veröffentlicht 05.07.2017 11:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

In ImageMagick 7.0.6-0, a heap-based buffer over-read in the GetNextToken function in token.c allows remote attackers to obtain sensitive information from process memory or possibly have unspecified other impact via a crafted SVG document that is mis...

  • EPSS 1.74%
  • Veröffentlicht 07.06.2017 14:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

In ImageMagick 7.0.5-7 Q16, an assertion failure was found in the function SetPixelChannelAttributes, which allows attackers to cause a denial of service via a crafted file.

  • EPSS 2.33%
  • Veröffentlicht 07.06.2017 14:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

In ImageMagick 7.0.5-8 Q16, an assertion failure was found in the function ResetImageProfileIterator, which allows attackers to cause a denial of service via a crafted file.

  • EPSS 1.94%
  • Veröffentlicht 07.06.2017 14:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

In ImageMagick 7.0.5-7 Q16, an assertion failure was found in the function LockSemaphoreInfo, which allows attackers to cause a denial of service via a crafted file.

  • EPSS 1.54%
  • Veröffentlicht 05.06.2017 18:29:00
  • Zuletzt bearbeitet 13.05.2026 00:24:29

In ImageMagick 7.0.5-5, a memory leak was found in the function ReadPDBImage in coders/pdb.c, which allows attackers to cause a denial of service via a crafted file.