Vulnerabilities > Imagemagick

DATE CVE VULNERABILITY TITLE RISK
2017-04-10 CVE-2017-7619 Infinite Loop vulnerability in Imagemagick 7.0.49
In ImageMagick 7.0.4-9, an infinite loop can occur because of a floating-point rounding error in some of the color algorithms.
network
low complexity
imagemagick CWE-835
7.5
2017-04-09 CVE-2017-7606 Improper Input Validation vulnerability in Imagemagick 7.0.54
coders/rle.c in ImageMagick 7.0.5-4 has an "outside the range of representable values of type unsigned char" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image.
network
low complexity
imagemagick CWE-20
6.5
2017-04-05 CVE-2014-9829 Out-of-bounds Read vulnerability in Imagemagick
coders/sun.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted sun file.
network
low complexity
imagemagick CWE-125
6.5
2017-03-30 CVE-2014-9826 7PK - Errors vulnerability in Imagemagick
ImageMagick allows remote attackers to have unspecified impact via vectors related to error handling in sun files.
network
low complexity
imagemagick CWE-388
critical
9.8
2017-03-30 CVE-2014-9825 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted psd file, a different vulnerability than CVE-2014-9824.
local
low complexity
imagemagick CWE-119
7.8
2017-03-30 CVE-2014-9824 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted psd file, a different vulnerability than CVE-2014-9825.
local
low complexity
imagemagick CWE-119
7.8
2017-03-30 CVE-2014-9823 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted palm file, a different vulnerability than CVE-2014-9819.
local
low complexity
imagemagick CWE-119
7.8
2017-03-30 CVE-2014-9822 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted quantum file.
local
low complexity
imagemagick CWE-119
7.8
2017-03-30 CVE-2014-9821 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted xpm file.
local
low complexity
imagemagick CWE-119
7.8
2017-03-30 CVE-2014-9820 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted pnm file.
local
low complexity
imagemagick CWE-119
7.8