Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2017-03-23 CVE-2016-8887 NULL Pointer Dereference vulnerability in multiple products
The jp2_colr_destroy function in libjasper/jp2/jp2_cod.c in JasPer before 1.900.10 allows remote attackers to cause a denial of service (NULL pointer dereference).
local
low complexity
jasper-project fedoraproject CWE-476
5.5
2017-03-23 CVE-2016-8886 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Jasper Project Jasper
The jas_malloc function in libjasper/base/jas_malloc.c in JasPer before 1.900.11 allows remote attackers to have unspecified impact via a crafted file, which triggers a memory allocation failure.
local
low complexity
jasper-project CWE-119
7.8
2017-03-23 CVE-2016-8885 NULL Pointer Dereference vulnerability in Jasper Project Jasper
The bmp_getdata function in libjasper/bmp/bmp_dec.c in JasPer before 1.900.9 allows remote attackers to cause a denial of service (NULL pointer dereference) by calling the imginfo command with a crafted BMP image.
local
low complexity
jasper-project CWE-476
5.5
2017-03-23 CVE-2016-10059 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Buffer overflow in coders/tiff.c in ImageMagick before 6.9.4-1 allows remote attackers to cause a denial of service (application crash) or have unspecified other impact via a crafted TIFF file.
local
low complexity
imagemagick CWE-119
7.8
2017-03-23 CVE-2016-10058 Resource Exhaustion vulnerability in Imagemagick
Memory leak in the ReadPSDLayers function in coders/psd.c in ImageMagick before 6.9.6-3 allows remote attackers to cause a denial of service (memory consumption) via a crafted image file.
local
low complexity
imagemagick CWE-400
5.5
2017-03-23 CVE-2016-10057 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Buffer overflow in the WriteGROUP4Image function in coders/tiff.c in ImageMagick before 6.9.5-8 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file.
local
low complexity
imagemagick CWE-119
7.8
2017-03-23 CVE-2016-10056 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Buffer overflow in the sixel_decode function in coders/sixel.c in ImageMagick before 6.9.5-8 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file.
local
low complexity
imagemagick CWE-119
7.8
2017-03-23 CVE-2016-10055 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Buffer overflow in the WritePDBImage function in coders/pdb.c in ImageMagick before 6.9.5-8 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file.
local
low complexity
imagemagick CWE-119
7.8
2017-03-23 CVE-2016-10054 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Buffer overflow in the WriteMAPImage function in coders/map.c in ImageMagick before 6.9.5-8 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file.
local
low complexity
imagemagick CWE-119
7.8
2017-03-23 CVE-2016-10053 Divide By Zero vulnerability in Imagemagick
The WriteTIFFImage function in coders/tiff.c in ImageMagick before 6.9.5-8 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted file.
local
low complexity
imagemagick CWE-369
5.5