Vulnerabilities > Imagemagick > High

DATE CVE VULNERABILITY TITLE RISK
2017-07-23 CVE-2017-11530 Resource Exhaustion vulnerability in Imagemagick
The ReadEPTImage function in coders/ept.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory consumption) via a crafted file.
7.1
2017-07-23 CVE-2017-11527 Resource Exhaustion vulnerability in Imagemagick
The ReadDPXImage function in coders/dpx.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory consumption) via a crafted file.
7.1
2017-07-23 CVE-2017-11526 Resource Exhaustion vulnerability in Imagemagick
The ReadOneMNGImage function in coders/png.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted file.
7.1
2017-07-23 CVE-2017-11525 Allocation of Resources Without Limits or Throttling vulnerability in Imagemagick
The ReadCINImage function in coders/cin.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers to cause a denial of service (memory consumption) via a crafted file.
7.1
2017-07-22 CVE-2017-11523 Infinite Loop vulnerability in Imagemagick
The ReadTXTImage function in coders/txt.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attackers to cause a denial of service (infinite loop) via a crafted file, because the end-of-file condition is not considered.
7.1
2017-07-21 CVE-2017-11505 Excessive Iteration vulnerability in Imagemagick
The ReadOneJNGImage function in coders/png.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a malformed JNG file.
7.1
2017-07-20 CVE-2017-11478 Infinite Loop vulnerability in Imagemagick
The ReadOneDJVUImage function in coders/djvu.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed DJVU image.
7.1
2017-07-19 CVE-2017-11446 Infinite Loop vulnerability in Imagemagick 7.0.61
The ReadPESImage function in coders\pes.c in ImageMagick 7.0.6-1 has an infinite loop vulnerability that can cause CPU exhaustion via a crafted PES file.
7.1
2017-07-12 CVE-2017-11188 Excessive Iteration vulnerability in Imagemagick 7.0.60
The ReadDPXImage function in coders\dpx.c in ImageMagick 7.0.6-0 has a large loop vulnerability that can cause CPU exhaustion via a crafted DPX file, related to lack of an EOF check.
network
low complexity
imagemagick CWE-834
7.8
2017-07-10 CVE-2017-11166 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.56
The ReadXWDImage function in coders\xwd.c in ImageMagick 7.0.5-6 has a memory leak vulnerability that can cause memory exhaustion via a crafted length (number of color-map entries) field in the header of an XWD file.
7.1