CVE-2017-14174
- EPSS 0.65%
- Veröffentlicht 07.09.2017 06:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In coders/psd.c in ImageMagick 7.0.7-0 Q16, a DoS in ReadPSDLayersInternal() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted PSD file, which claims a large "length" field in the header but does not contain s...
CVE-2017-14175
- EPSS 0.58%
- Veröffentlicht 07.09.2017 06:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In coders/xbm.c in ImageMagick 7.0.6-1 Q16, a DoS in ReadXBMImage() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted XBM file, which claims large rows and columns fields in the header but does not contain suf...
CVE-2017-14166
- EPSS 1.36%
- Veröffentlicht 06.09.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
libarchive 3.3.2 allows remote attackers to cause a denial of service (xml_data heap-based buffer over-read and application crash) via a crafted xar archive, related to the mishandling of empty strings in the atol8 function in archive_read_support_fo...
CVE-2017-2862
- EPSS 5.69%
- Veröffentlicht 05.09.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
An exploitable heap overflow vulnerability exists in the gdk_pixbuf__jpeg_image_load_increment functionality of Gdk-Pixbuf 2.36.6. A specially crafted jpeg file can cause a heap overflow resulting in remote code execution. An attacker can send a file...
CVE-2017-2870
- EPSS 3.13%
- Veröffentlicht 05.09.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
An exploitable integer overflow vulnerability exists in the tiff_image_parse functionality of Gdk-Pixbuf 2.36.6 when compiled with Clang. A specially crafted tiff file can cause a heap-overflow resulting in remote code execution. An attacker can send...
CVE-2017-14151
- EPSS 0.91%
- Veröffentlicht 05.09.2017 16:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
An off-by-one error was discovered in opj_tcd_code_block_enc_allocate_data in lib/openjp2/tcd.c in OpenJPEG 2.2.0. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service (heap-based buffer overflow affecting opj_m...
CVE-2017-14152
- EPSS 1.09%
- Veröffentlicht 05.09.2017 16:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
A mishandled zero case was discovered in opj_j2k_set_cinema_parameters in lib/openjp2/j2k.c in OpenJPEG 2.2.0. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service (heap-based buffer overflow affecting opj_write...
CVE-2017-1000083
- EPSS 76.67%
- Veröffentlicht 05.09.2017 06:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
backend/comics/comics-document.c (aka the comic book backend) in GNOME Evince before 3.24.1 allows remote attackers to execute arbitrary commands via a .cbt file that is a TAR archive containing a filename beginning with a "--" command-line option su...
CVE-2017-14136
- EPSS 1.01%
- Veröffentlicht 04.09.2017 23:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
OpenCV (Open Source Computer Vision Library) 3.3 has an out-of-bounds write error in the function FillColorRow1 in utils.cpp when reading an image file by using cv::imread. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-125...
CVE-2017-14132
- EPSS 1.04%
- Veröffentlicht 04.09.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
JasPer 1.900.8, 1.900.9, 1.900.10, 1.900.11, 1.900.12, 1.900.13, 1.900.14, 1.900.15, 1.900.16, 1.900.17, 1.900.18, 1.900.19, 1.900.20, 1.900.21, 1.900.22, 1.900.23, 1.900.24, 1.900.25, 1.900.26, 1.900.27, 1.900.28, 1.900.29, 1.900.30, 1.900.31, 2.0.0...