Show filters
49 Total Results
Displaying 31-40 of 49
Sort by:
Attacker Value
Unknown
CVE-2012-1185
Disclosure Date: June 05, 2012 (last updated November 08, 2023)
Multiple integer overflows in (1) magick/profile.c or (2) magick/property.c in ImageMagick 6.7.5 and earlier allow remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted offset value in the ResolutionUnit tag in the EXIF IFD0 of an image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0247.
0
Attacker Value
Unknown
CVE-2007-4988
Disclosure Date: September 24, 2007 (last updated February 02, 2024)
Sign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code via a crafted width value in an image file, which triggers an integer overflow and a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2007-4985
Disclosure Date: September 24, 2007 (last updated October 04, 2023)
ImageMagick before 6.3.5-9 allows context-dependent attackers to cause a denial of service via a crafted image file that triggers (1) an infinite loop in the ReadDCMImage function, related to ReadBlobByte function calls; or (2) an infinite loop in the ReadXCFImage function, related to ReadBlobMSBLong function calls.
0
Attacker Value
Unknown
CVE-2007-4986
Disclosure Date: September 24, 2007 (last updated October 04, 2023)
Multiple integer overflows in ImageMagick before 6.3.5-9 allow context-dependent attackers to execute arbitrary code via a crafted (1) .dcm, (2) .dib, (3) .xbm, (4) .xcf, or (5) .xwd image file, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2007-4987
Disclosure Date: September 24, 2007 (last updated October 04, 2023)
Off-by-one error in the ReadBlobString function in blob.c in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code via a crafted image file, which triggers the writing of a '\0' character to an out-of-bounds address.
0
Attacker Value
Unknown
CVE-2006-5868
Disclosure Date: November 22, 2006 (last updated October 04, 2023)
Multiple buffer overflows in Imagemagick 6.0 before 6.0.6.2, and 6.2 before 6.2.4.5, has unknown impact and user-assisted attack vectors via a crafted SGI image.
0
Attacker Value
Unknown
CVE-2006-5456
Disclosure Date: October 23, 2006 (last updated October 04, 2023)
Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 allow user-assisted attackers to cause a denial of service and possibly execute arbitrary code via (1) a DCM image that is not properly handled by the ReadDCMImage function in coders/dcm.c, or (2) a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c.
0
Attacker Value
Unknown
CVE-2006-4144
Disclosure Date: August 15, 2006 (last updated October 04, 2023)
Integer overflow in the ReadSGIImage function in sgi.c in ImageMagick before 6.2.9 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via large (1) bytes_per_pixel, (2) columns, and (3) rows values, which trigger a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2006-2440
Disclosure Date: May 18, 2006 (last updated October 04, 2023)
Heap-based buffer overflow in the libMagick component of ImageMagick 6.0.6.2 might allow attackers to execute arbitrary code via an image index array that triggers the overflow during filename glob expansion by the ExpandFilenames function.
0
Attacker Value
Unknown
CVE-2005-3582
Disclosure Date: November 16, 2005 (last updated February 22, 2025)
ImageMagick before 6.2.4.2-r1 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing objects in it to be loaded at runtime.
0