Vulnerabilities > Imagemagick

DATE CVE VULNERABILITY TITLE RISK
2017-07-23 CVE-2017-11535 Out-of-bounds Read vulnerability in Imagemagick 7.0.61
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer over-read in the WritePSImage() function in coders/ps.c.
network
low complexity
imagemagick CWE-125
6.5
2017-07-23 CVE-2017-11534 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.61
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Memory Leak in the lite_font_map() function in coders/wmf.c.
network
low complexity
imagemagick CWE-772
6.5
2017-07-23 CVE-2017-11533 Out-of-bounds Read vulnerability in Imagemagick 7.0.61
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer over-read in the WriteUILImage() function in coders/uil.c.
network
low complexity
imagemagick CWE-125
6.5
2017-07-23 CVE-2017-11532 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.61
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Memory Leak in the WriteMPCImage() function in coders/mpc.c.
network
low complexity
imagemagick CWE-772
6.5
2017-07-23 CVE-2017-11531 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.61
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Memory Leak in the WriteHISTOGRAMImage() function in coders/histogram.c.
network
low complexity
imagemagick CWE-772
6.5
2017-07-23 CVE-2017-11530 Resource Exhaustion vulnerability in Imagemagick
The ReadEPTImage function in coders/ept.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory consumption) via a crafted file.
network
low complexity
imagemagick CWE-400
6.5
2017-07-23 CVE-2017-11529 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick
The ReadMATImage function in coders/mat.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory leak) via a crafted file.
network
low complexity
imagemagick CWE-772
6.5
2017-07-23 CVE-2017-11528 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick
The ReadDIBImage function in coders/dib.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory leak) via a crafted file.
network
low complexity
imagemagick CWE-772
6.5
2017-07-23 CVE-2017-11527 Resource Exhaustion vulnerability in Imagemagick
The ReadDPXImage function in coders/dpx.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory consumption) via a crafted file.
network
low complexity
imagemagick CWE-400
6.5
2017-07-23 CVE-2017-11526 Resource Exhaustion vulnerability in Imagemagick
The ReadOneMNGImage function in coders/png.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted file.
network
low complexity
imagemagick CWE-400
6.5