Skip to main content

Vendor archive

imagemagick CVEs

Beta · best-effort

801 CVEs tagged to vendor imagemagick41 Critical, 210 High, 512 Medium, 38 Low, 0 Unrated.

CVE-2017-14324

Published Sep 12, 2017

In ImageMagick 7.0.7-1 Q16, a memory leak vulnerability was found in the function ReadMPCImage in coders/mpc.c, which allows attackers to cause a denial of service via a crafted f…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-14249

Published Sep 11, 2017

ImageMagick 7.0.6-8 Q16 mishandles EOF checks in ReadMPCImage in coders/mpc.c, leading to division by zero in GetPixelCacheTileSize in MagickCore/cache.c, allowing remote attacker…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-14248

Published Sep 11, 2017

A heap-based buffer over-read in SampleImage() in MagickCore/resize.c in ImageMagick 7.0.6-8 Q16 allows remote attackers to cause a denial of service via a crafted file.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-14224

Published Sep 9, 2017

A heap-based buffer overflow in WritePCXImage in coders/pcx.c in ImageMagick 7.0.6-8 Q16 allows remote attackers to cause a denial of service or code execution via a crafted file.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-14138

Published Sep 4, 2017

ImageMagick 7.0.6-5 has a memory leak vulnerability in ReadWEBPImage in coders/webp.c because memory is not freed in certain error cases, as demonstrated by VP8 errors.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2017-14137

Published Sep 4, 2017

ReadWEBPImage in coders/webp.c in ImageMagick 7.0.6-5 has an issue where memory allocation is excessive because it depends only on a length field in a header.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-13758

Published Aug 29, 2017

In ImageMagick 7.0.6-10, there is a heap-based buffer overflow in the TracePoint() function in MagickCore/draw.c.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-12875

Published Aug 29, 2017

The WritePixelCachePixels function in ImageMagick 7.0.6-6 allows remote attackers to cause a denial of service (CPU consumption) via a crafted file.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-12876

Published Aug 28, 2017

Heap-based buffer overflow in enhance.c in ImageMagick before 7.0.6-6 allows remote attackers to cause a denial of service via a crafted file.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13658

Published Aug 24, 2017

In ImageMagick before 6.9.9-3 and 7.x before 7.0.6-3, there is a missing NULL check in the ReadMATImage function in coders/mat.c, leading to a denial of service (assertion failure…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 426-450 of 801 CVEsPage 18 of 33