Vulnerabilities > Imagemagick > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-06-05 CVE-2017-9440 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.55
In ImageMagick 7.0.5-5, a memory leak was found in the function ReadPSDChannel in coders/psd.c, which allows attackers to cause a denial of service via a crafted file.
4.3
2017-06-05 CVE-2017-9439 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.55
In ImageMagick 7.0.5-5, a memory leak was found in the function ReadPDBImage in coders/pdb.c, which allows attackers to cause a denial of service via a crafted file.
4.3
2017-06-02 CVE-2017-9409 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.55
In ImageMagick 7.0.5-5, the ReadMPCImage function in mpc.c allows attackers to cause a denial of service (memory leak) via a crafted file.
4.3
2017-06-02 CVE-2017-9407 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.55
In ImageMagick 7.0.5-5, the ReadPALMImage function in palm.c allows attackers to cause a denial of service (memory leak) via a crafted file.
4.3
2017-06-02 CVE-2017-9405 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.55
In ImageMagick 7.0.5-5, the ReadICONImage function in icon.c:452 allows attackers to cause a denial of service (memory leak) via a crafted file.
4.3
2017-05-29 CVE-2017-9262 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.56
In ImageMagick 7.0.5-6 Q16, the ReadJNGImage function in coders/png.c allows attackers to cause a denial of service (memory leak) via a crafted file.
4.3
2017-05-29 CVE-2017-9261 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.56
In ImageMagick 7.0.5-6 Q16, the ReadMNGImage function in coders/png.c allows attackers to cause a denial of service (memory leak) via a crafted file.
4.3
2017-05-22 CVE-2017-9144 Improper Input Validation vulnerability in multiple products
In ImageMagick 7.0.5-5, a crafted RLE image can trigger a crash because of incorrect EOF handling in coders/rle.c.
4.3
2017-05-22 CVE-2017-9143 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
In ImageMagick 7.0.5-5, the ReadARTImage function in coders/art.c allows attackers to cause a denial of service (memory leak) via a crafted .art file.
4.3
2017-05-22 CVE-2017-9142 Reachable Assertion vulnerability in multiple products
In ImageMagick 7.0.5-7 Q16, a crafted file could trigger an assertion failure in the WriteBlob function in MagickCore/blob.c because of missing checks in the ReadOneJNGImage function in coders/png.c.
4.3