Show filters
111 Total Results
Displaying 51-60 of 111
Sort by:
Attacker Value
Unknown

CVE-2017-14633

Disclosure Date: September 21, 2017 (last updated November 26, 2024)
In Xiph.Org libvorbis 1.3.5, an out-of-bounds array read vulnerability exists in the function mapping0_forward() in mapping0.c, which may lead to DoS when operating on a crafted audio file with vorbis_analysis().
Attacker Value
Unknown

CVE-2017-14632

Disclosure Date: September 21, 2017 (last updated November 26, 2024)
Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout() in info.c when vi->channels<=0, a similar issue to Mozilla bug 550184.
Attacker Value
Unknown

CVE-2017-14504

Disclosure Date: September 17, 2017 (last updated November 08, 2023)
ReadPNMImage in coders/pnm.c in GraphicsMagick 1.3.26 does not ensure the correct number of colors for the XV 332 format, leading to a NULL Pointer Dereference.
0
Attacker Value
Unknown

CVE-2017-14314

Disclosure Date: September 12, 2017 (last updated November 26, 2024)
Off-by-one error in the DrawImage function in magick/render.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (DrawDashPolygon heap-based buffer over-read and application crash) via a crafted file.
0
Attacker Value
Unknown

CVE-2017-13777

Disclosure Date: August 30, 2017 (last updated November 26, 2024)
GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version==10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.
0
Attacker Value
Unknown

CVE-2017-13776

Disclosure Date: August 30, 2017 (last updated November 26, 2024)
GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version!=10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.
0
Attacker Value
Unknown

CVE-2017-13775

Disclosure Date: August 30, 2017 (last updated November 08, 2023)
GraphicsMagick 1.3.26 has a denial of service issue in ReadJNXImage() in coders/jnx.c whereby large amounts of CPU and memory resources may be consumed although the file itself does not support the requests.
0
Attacker Value
Unknown

CVE-2017-13737

Disclosure Date: August 29, 2017 (last updated November 08, 2023)
There is an invalid free in the MagickFree function in magick/memory.c in GraphicsMagick 1.3.26 that will lead to a remote denial of service attack.
0
Attacker Value
Unknown

CVE-2017-12904

Disclosure Date: August 23, 2017 (last updated November 08, 2023)
Improper Neutralization of Special Elements used in an OS Command in bookmarking function of Newsbeuter versions 0.7 through 2.9 allows remote attackers to perform user-assisted code execution by crafting an RSS item that includes shell code in its title and/or URL.
0
Attacker Value
Unknown

CVE-2017-13065

Disclosure Date: August 22, 2017 (last updated November 08, 2023)
GraphicsMagick 1.3.26 has a NULL pointer dereference vulnerability in the function SVGStartElement in coders/svg.c.
0