Show filters
120 Total Results
Displaying 21-30 of 120
Sort by:
Attacker Value
Unknown

CVE-2018-20184

Disclosure Date: December 17, 2018 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20181209 Q8, there is a heap-based buffer overflow in the WriteTGAImage function of tga.c, which allows attackers to cause a denial of service via a crafted image file, because the number of rows or columns can exceed the pixel-dimension restrictions of the TGA specification.
0
Attacker Value
Unknown

CVE-2018-20185

Disclosure Date: December 17, 2018 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20181209 Q8 on 32-bit platforms, there is a heap-based buffer over-read in the ReadBMPImage function of bmp.c, which allows attackers to cause a denial of service via a crafted bmp image file. This only affects GraphicsMagick installations with customized BMP limits.
Attacker Value
Unknown

CVE-2018-18544

Disclosure Date: October 21, 2018 (last updated November 27, 2024)
There is a memory leak in the function WriteMSLImage of coders/msl.c in ImageMagick 7.0.8-13 Q16, and the function ProcessMSLScript of coders/msl.c in GraphicsMagick before 1.3.31.
0
Attacker Value
Unknown

CVE-2018-9018

Disclosure Date: March 25, 2018 (last updated November 08, 2023)
In GraphicsMagick 1.3.28, there is a divide-by-zero in the ReadMNGImage function of coders/png.c. Remote attackers could leverage this vulnerability to cause a crash and denial of service via a crafted mng file.
0
Attacker Value
Unknown

CVE-2017-18231

Disclosure Date: March 14, 2018 (last updated November 26, 2024)
An issue was discovered in GraphicsMagick 1.3.26. A NULL pointer dereference vulnerability was found in the function ReadEnhMetaFile in coders/emf.c, which allows attackers to cause a denial of service via a crafted file.
0
Attacker Value
Unknown

CVE-2017-18229

Disclosure Date: March 14, 2018 (last updated November 26, 2024)
An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows attackers to cause a denial of service via a crafted file, because file size is not properly used to restrict scanline, strip, and tile allocations.
0
Attacker Value
Unknown

CVE-2017-18230

Disclosure Date: March 14, 2018 (last updated November 26, 2024)
An issue was discovered in GraphicsMagick 1.3.26. A NULL pointer dereference vulnerability was found in the function ReadCINEONImage in coders/cineon.c, which allows attackers to cause a denial of service via a crafted file.
0
Attacker Value
Unknown

CVE-2017-18219

Disclosure Date: March 05, 2018 (last updated November 08, 2023)
An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadOnePNGImage in coders/png.c, which allows attackers to cause a denial of service via a crafted file that triggers an attempt at a large png_pixels array allocation.
0
Attacker Value
Unknown

CVE-2017-18220

Disclosure Date: March 05, 2018 (last updated November 08, 2023)
The ReadOneJNGImage and ReadJNGImage functions in coders/png.c in GraphicsMagick 1.3.26 allow remote attackers to cause a denial of service (magick/blob.c CloseBlob use-after-free) or possibly have unspecified other impact via a crafted file, a related issue to CVE-2017-11403.
0
Attacker Value
Unknown

CVE-2018-6799

Disclosure Date: February 07, 2018 (last updated November 08, 2023)
The AcquireCacheNexus function in magick/pixel_cache.c in GraphicsMagick before 1.3.28 allows remote attackers to cause a denial of service (heap overwrite) or possibly have unspecified other impact via a crafted image file, because a pixel staging area is not used.
0