Vulnerabilities > Imagemagick > Imagemagick > 6.9.10.94

DATE CVE VULNERABILITY TITLE RISK
2021-03-09 CVE-2021-20241 A flaw was found in ImageMagick in coders/jp2.c.
local
low complexity
imagemagick debian
5.5
2021-02-23 CVE-2020-27768 Integer Overflow or Wraparound vulnerability in multiple products
In ImageMagick, there is an outside the range of representable values of type 'unsigned int' at MagickCore/quantum-private.h.
local
low complexity
imagemagick debian CWE-190
3.3
2021-02-06 CVE-2021-20176 A divide-by-zero flaw was found in ImageMagick 6.9.11-57 and 7.0.10-57 in gem.c.
local
low complexity
imagemagick debian
5.5
2020-12-08 CVE-2020-27752 Heap-based Buffer Overflow vulnerability in Imagemagick
A flaw was found in ImageMagick in MagickCore/quantum-private.h.
network
low complexity
imagemagick CWE-122
7.1
2020-12-08 CVE-2020-25663 Use After Free vulnerability in Imagemagick
A call to ConformPixelInfo() in the SetImageAlphaChannel() routine of /MagickCore/channel.c caused a subsequent heap-use-after-free or heap-buffer-overflow READ when GetPixelRed() or GetPixelBlue() was called.
4.3
2020-12-07 CVE-2020-29599 XML Injection (aka Blind XPath Injection) vulnerability in multiple products
ImageMagick before 6.9.11-40 and 7.x before 7.0.10-40 mishandles the -authenticate option, which allows setting a password for password-protected PDF files.
local
low complexity
imagemagick debian CWE-91
7.8
2019-07-01 CVE-2019-13136 Integer Overflow or Wraparound vulnerability in Imagemagick
ImageMagick before 7.0.8-50 has an integer overflow vulnerability in the function TIFFSeekCustomStream in coders/tiff.c.
local
low complexity
imagemagick CWE-190
7.8