Vulnerabilities > Imagemagick > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-04-19 CVE-2016-7531 Out-of-bounds Write vulnerability in Imagemagick
MagickCore/memory.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted PDB file.
4.3
2017-04-19 CVE-2016-7529 Out-of-bounds Read vulnerability in Imagemagick
coders/xcf.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted XCF file.
network
low complexity
imagemagick CWE-125
6.5
2017-04-19 CVE-2016-7528 Out-of-bounds Read vulnerability in Imagemagick
The ReadVIFFImage function in coders/viff.c in ImageMagick allows remote attackers to cause a denial of service (segmentation fault) via a crafted VIFF file.
network
low complexity
imagemagick CWE-125
6.5
2017-04-19 CVE-2016-7522 Out-of-bounds Read vulnerability in Imagemagick
The ReadPSDImage function in MagickCore/locale.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file.
network
low complexity
imagemagick CWE-125
6.5
2017-04-19 CVE-2016-7519 Out-of-bounds Read vulnerability in Imagemagick
The ReadRLEImage function in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
network
low complexity
imagemagick CWE-125
6.5
2017-04-19 CVE-2016-7515 Out-of-bounds Read vulnerability in Imagemagick
The ReadRLEImage function in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via vectors related to the number of pixels.
network
low complexity
imagemagick CWE-125
6.5
2017-04-19 CVE-2014-9907 Improper Input Validation vulnerability in Imagemagick
coders/dds.c in ImageMagick allows remote attackers to cause a denial of service via a crafted DDS file.
network
low complexity
imagemagick CWE-20
6.5
2017-04-18 CVE-2017-7943 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
The ReadSVGImage function in svg.c in ImageMagick 7.0.5-4 allows remote attackers to consume an amount of available memory via a crafted file.
4.3
2017-04-18 CVE-2017-7942 Missing Release of Resource after Effective Lifetime vulnerability in Imagemagick 7.0.54
The ReadAVSImage function in avs.c in ImageMagick 7.0.5-4 allows remote attackers to consume an amount of available memory via a crafted file.
4.3
2017-04-18 CVE-2017-7941 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
The ReadSGIImage function in sgi.c in ImageMagick 7.0.5-4 allows remote attackers to consume an amount of available memory via a crafted file.
4.3