Vulnerabilities > Imagemagick > High

DATE CVE VULNERABILITY TITLE RISK
2017-07-10 CVE-2017-11141 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.56
The ReadMATImage function in coders\mat.c in ImageMagick 7.0.5-6 has a memory leak vulnerability that can cause memory exhaustion via a crafted MAT file, related to incorrect ordering of a SetImageExtent call.
7.1
2017-05-04 CVE-2017-8765 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.55
The function named ReadICONImage in coders\icon.c in ImageMagick 7.0.5-5 has a memory leak vulnerability which can cause memory exhaustion via a crafted ICON file.
7.1
2017-04-20 CVE-2015-8959 Resource Management Errors vulnerability in Imagemagick
coders/dds.c in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (CPU consumption) via a crafted DDS file.
7.1
2017-03-30 CVE-2014-9826 7PK - Errors vulnerability in Imagemagick
ImageMagick allows remote attackers to have unspecified impact via vectors related to error handling in sun files.
network
low complexity
imagemagick CWE-388
7.5
2017-03-30 CVE-2014-9825 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted psd file, a different vulnerability than CVE-2014-9824.
local
low complexity
imagemagick CWE-119
7.8
2017-03-30 CVE-2014-9824 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted psd file, a different vulnerability than CVE-2014-9825.
local
low complexity
imagemagick CWE-119
7.8
2017-03-30 CVE-2014-9823 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted palm file, a different vulnerability than CVE-2014-9819.
local
low complexity
imagemagick CWE-119
7.8
2017-03-30 CVE-2014-9822 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted quantum file.
local
low complexity
imagemagick CWE-119
7.8
2017-03-30 CVE-2014-9821 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted xpm file.
local
low complexity
imagemagick CWE-119
7.8
2017-03-30 CVE-2014-9820 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Imagemagick
Heap-based buffer overflow in ImageMagick allows remote attackers to have unspecified impact via a crafted pnm file.
local
low complexity
imagemagick CWE-119
7.8