Show filters
819 Total Results
Displaying 21-30 of 819
Sort by:
Attacker Value
Unknown

CVE-2023-37734

Disclosure Date: August 10, 2023 (last updated October 08, 2023)
EZ softmagic MP3 Audio Converter 2.7.3.700 was discovered to contain a buffer overflow.
Attacker Value
Unknown

CVE-2023-39978

Disclosure Date: August 08, 2023 (last updated December 01, 2023)
ImageMagick before 6.9.12-91 allows attackers to cause a denial of service (memory consumption) in Magick::Draw.
Attacker Value
Unknown

CVE-2023-3745

Disclosure Date: July 24, 2023 (last updated April 25, 2024)
A heap-based buffer overflow issue was found in ImageMagick's PushCharPixel() function in quantum-private.h. This issue may allow a local attacker to trick the user into opening a specially crafted file, triggering an out-of-bounds read error and allowing an application to crash, resulting in a denial of service.
Attacker Value
Unknown

CVE-2023-3195

Disclosure Date: June 16, 2023 (last updated October 08, 2023)
A stack-based buffer overflow issue was found in ImageMagick's coders/tiff.c. This flaw allows an attacker to trick the user into opening a specially crafted malicious tiff file, causing an application to crash, resulting in a denial of service.
Attacker Value
Unknown

CVE-2023-34475

Disclosure Date: June 16, 2023 (last updated July 12, 2024)
A heap use after free issue was discovered in ImageMagick's ReplaceXmpValue() function in MagickCore/profile.c. An attacker could trick user to open a specially crafted file to convert, triggering an heap-use-after-free write error, allowing an application to crash, resulting in a denial of service.
Attacker Value
Unknown

CVE-2023-34474

Disclosure Date: June 16, 2023 (last updated July 12, 2024)
A heap-based buffer overflow issue was discovered in ImageMagick's ReadTIM2ImageData() function in coders/tim2.c. A local attacker could trick the user in opening specially crafted file, triggering an out-of-bounds read error, allowing an application to crash, resulting in a denial of service.
Attacker Value
Unknown

CVE-2023-2157

Disclosure Date: June 06, 2023 (last updated October 08, 2023)
A heap-based buffer overflow vulnerability was found in the ImageMagick package that can lead to the application crashing.
Attacker Value
Unknown

CVE-2023-34153

Disclosure Date: May 30, 2023 (last updated October 08, 2023)
A vulnerability was found in ImageMagick. This security flaw causes a shell command injection vulnerability via video:vsync or video:pixel-format options in VIDEO encoding/decoding.
Attacker Value
Unknown

CVE-2023-34151

Disclosure Date: May 30, 2023 (last updated December 21, 2024)
A vulnerability was found in ImageMagick. This security flaw ouccers as an undefined behaviors of casting double to size_t in svg, mvg and other coders (recurring bugs of CVE-2022-32546).
Attacker Value
Unknown

CVE-2023-30024

Disclosure Date: April 28, 2023 (last updated October 08, 2023)
The MagicJack device, a VoIP solution for internet phone calls, contains a hidden NAND flash memory partition allowing unauthorized read/write access. Attackers can exploit this by replacing the original software with a malicious version, leading to ransomware deployment on the host computer. Affected devices have firmware versions prior to magicJack A921 USB Phone Jack Rev 3.0 V1.4.