Skip to main content

Vendor archive

imagemagick CVEs

Beta · best-effort

806 CVEs tagged to vendor imagemagick41 Critical, 210 High, 517 Medium, 38 Low, 0 Unrated.

CVE-2017-13758

Published Aug 29, 2017

In ImageMagick 7.0.6-10, there is a heap-based buffer overflow in the TracePoint() function in MagickCore/draw.c.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-12875

Published Aug 29, 2017

The WritePixelCachePixels function in ImageMagick 7.0.6-6 allows remote attackers to cause a denial of service (CPU consumption) via a crafted file.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-12876

Published Aug 28, 2017

Heap-based buffer overflow in enhance.c in ImageMagick before 7.0.6-6 allows remote attackers to cause a denial of service via a crafted file.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13658

Published Aug 24, 2017

In ImageMagick before 6.9.9-3 and 7.x before 7.0.6-3, there is a missing NULL check in the ReadMATImage function in coders/mat.c, leading to a denial of service (assertion failure…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13146

Published Aug 23, 2017

In ImageMagick before 6.9.8-5 and 7.x before 7.0.5-6, there is a memory leak in the ReadMATImage function in coders/mat.c.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-13144

Published Aug 23, 2017

In ImageMagick before 6.9.7-10, there is a crash (rather than a "width or height exceeds limit" error report) if the image dimensions are too large, as demonstrated by use of the…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13143

Published Aug 23, 2017

In ImageMagick before 6.9.7-6 and 7.x before 7.0.4-6, the ReadMATImage function in coders/mat.c uses uninitialized data, which might allow remote attackers to obtain sensitive inf…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-13142

Published Aug 23, 2017

In ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1, a crafted PNG file could trigger a crash because there was an insufficient check for short files.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13141

Published Aug 23, 2017

In ImageMagick before 6.9.9-4 and 7.x before 7.0.6-4, a crafted file could trigger a memory leak in ReadOnePNGImage in coders/png.c.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13140

Published Aug 23, 2017

In ImageMagick before 6.9.9-1 and 7.x before 7.0.6-2, the ReadOnePNGImage function in coders/png.c allows remote attackers to cause a denial of service (application hang in LockSe…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13134

Published Aug 23, 2017

In ImageMagick 7.0.6-6 and GraphicsMagick 1.3.26, a heap-based buffer over-read was found in the function SFWScan in coders/sfw.c, which allows attackers to cause a denial of serv…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13133

Published Aug 23, 2017

In ImageMagick 7.0.6-8, the load_level function in coders/xcf.c lacks offset validation, which allows attackers to cause a denial of service (load_tile memory exhaustion) via a cr…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13132

Published Aug 23, 2017

In ImageMagick 7.0.6-8, the WritePDFImage function in coders/pdf.c operates on an incorrect data structure in the "dump uncompressed PseudoColor packets" step, which allows attack…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13131

Published Aug 23, 2017

In ImageMagick 7.0.6-8, a memory leak vulnerability was found in the function ReadMIFFImage in coders/miff.c, which allows attackers to cause a denial of service (memory consumpti…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13062

Published Aug 22, 2017

In ImageMagick 7.0.6-6, a memory leak vulnerability was found in the function formatIPTC in coders/meta.c, which allows attackers to cause a denial of service (WriteMETAImage memo…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13061

Published Aug 22, 2017

In ImageMagick 7.0.6-5, a length-validation vulnerability was found in the function ReadPSDLayersInternal in coders/psd.c, which allows attackers to cause a denial of service (Rea…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13060

Published Aug 22, 2017

In ImageMagick 7.0.6-5, a memory leak vulnerability was found in the function ReadMATImage in coders/mat.c, which allows attackers to cause a denial of service via a crafted file.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13059

Published Aug 22, 2017

In ImageMagick 7.0.6-6, a memory leak vulnerability was found in the function WriteOneJNGImage in coders/png.c, which allows attackers to cause a denial of service (WriteJNGImage…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-13058

Published Aug 22, 2017

In ImageMagick 7.0.6-6, a memory leak vulnerability was found in the function WritePCXImage in coders/pcx.c, which allows attackers to cause a denial of service via a crafted file.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-12983

Published Aug 21, 2017

Heap-based buffer overflow in the ReadSFWImage function in coders/sfw.c in ImageMagick 7.0.6-8 allows remote attackers to cause a denial of service (application crash) or possibly…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-12676

Published Aug 7, 2017

In ImageMagick 7.0.6-3, a memory leak vulnerability was found in the function ReadOneJNGImage in coders/png.c, which allows attackers to cause a denial of service.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-12675

Published Aug 7, 2017

In ImageMagick 7.0.6-3, a missing check for multidimensional data was found in coders/mat.c, leading to a memory leak in the function ReadImage in MagickCore/constitute.c, which a…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 451-475 of 806 CVEsPage 19 of 33