CVE-2012-1798
- EPSS 1.41%
- Veröffentlicht 05.06.2012 22:55:10
- Zuletzt bearbeitet 11.04.2025 00:51:21
The TIFFGetEXIFProperties function in coders/tiff.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted EXIF IFD in a TIFF image.
CVE-2012-0248
- EPSS 0.29%
- Veröffentlicht 05.06.2012 22:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
ImageMagick 6.7.5-7 and earlier allows remote attackers to cause a denial of service (infinite loop and hang) via a crafted image whose IFD contains IOP tags that all reference the beginning of the IDF.
CVE-2012-0260
- EPSS 1.94%
- Veröffentlicht 05.06.2012 22:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The JPEGWarningHandler function in coders/jpeg.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (memory consumption) via a JPEG image with a crafted sequence of restart markers.
CVE-2012-0247
- EPSS 4.21%
- Veröffentlicht 05.06.2012 22:55:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
ImageMagick 6.7.5-7 and earlier allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted offset and count values in the ResolutionUnit tag in the EXIF IFD0 of an image.
CVE-2012-1703
- EPSS 0.79%
- Veröffentlicht 03.05.2012 22:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.61 and earlier, and 5.5.21 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server Optimizer, a different vulnerability th...
CVE-2011-3045
- EPSS 5.81%
- Veröffentlicht 22.03.2012 16:55:01
- Zuletzt bearbeitet 09.06.2025 16:15:22
Integer signedness error in the png_inflate function in pngrutil.c in libpng before 1.4.10beta01, as used in Google Chrome before 17.0.963.83 and other products, allows remote attackers to cause a denial of service (application crash) or possibly exe...
CVE-2011-3919
- EPSS 2.5%
- Veröffentlicht 07.01.2012 11:55:13
- Zuletzt bearbeitet 11.04.2025 00:51:21
Heap-based buffer overflow in libxml2, as used in Google Chrome before 16.0.912.75, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
- EPSS 1.33%
- Veröffentlicht 13.12.2011 21:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
libxml2, as used in Google Chrome before 16.0.912.63, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
CVE-2011-2834
- EPSS 3.75%
- Veröffentlicht 19.09.2011 12:02:55
- Zuletzt bearbeitet 11.04.2025 00:51:21
Double free vulnerability in libxml2, as used in Google Chrome before 14.0.835.163, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.
CVE-2011-1776
- EPSS 0.12%
- Veröffentlicht 06.09.2011 16:55:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
The is_gpt_valid function in fs/partitions/efi.c in the Linux kernel before 2.6.39 does not check the size of an Extensible Firmware Interface (EFI) GUID Partition Table (GPT) entry, which allows physically proximate attackers to cause a denial of se...