Vulnerabilities > Imagemagick
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2017-03-14 | CVE-2016-10252 | Resource Management Errors vulnerability in Imagemagick Memory leak in the IsOptionMember function in MagickCore/option.c in ImageMagick before 6.9.2-2, as used in ODR-PadEnc and other products, allows attackers to trigger memory consumption. | 7.5 |
2017-03-06 | CVE-2017-6502 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick 6.9.7 An issue was discovered in ImageMagick 6.9.7. | 5.5 |
2017-03-06 | CVE-2017-6501 | NULL Pointer Dereference vulnerability in Imagemagick 6.9.7 An issue was discovered in ImageMagick 6.9.7. | 5.5 |
2017-03-06 | CVE-2017-6500 | Out-of-bounds Read vulnerability in multiple products An issue was discovered in ImageMagick 6.9.7. | 5.5 |
2017-03-06 | CVE-2017-6499 | Missing Release of Resource after Effective Lifetime vulnerability in multiple products An issue was discovered in Magick++ in ImageMagick 6.9.7. | 5.5 |
2017-03-06 | CVE-2017-6498 | Improper Input Validation vulnerability in multiple products An issue was discovered in ImageMagick 6.9.7. | 5.5 |
2017-03-06 | CVE-2017-6497 | NULL Pointer Dereference vulnerability in Imagemagick 6.9.7 An issue was discovered in ImageMagick 6.9.7. | 7.5 |
2017-03-03 | CVE-2016-10070 | Out-of-bounds Read vulnerability in multiple products Heap-based buffer overflow in the CalcMinMax function in coders/mat.c in ImageMagick before 6.9.4-0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted mat file. | 5.5 |
2017-03-03 | CVE-2016-10066 | Classic Buffer Overflow vulnerability in Imagemagick Buffer overflow in the ReadVIFFImage function in coders/viff.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (application crash) via a crafted file. | 5.5 |
2017-03-03 | CVE-2016-10065 | Improper Access Control vulnerability in multiple products The ReadVIFFImage function in coders/viff.c in ImageMagick before 7.0.1-0 allows remote attackers to cause a denial of service (application crash) or have other unspecified impact via a crafted file. | 7.8 |