Show filters
508 Total Results
Displaying 51-60 of 508
Sort by:
Attacker Value
Unknown

CVE-2016-8684

Disclosure Date: February 15, 2017 (last updated November 26, 2024)
The MagickMalloc function in magick/memory.c in GraphicsMagick 1.3.25 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure and a "file truncation error for corrupt file."
0
Attacker Value
Unknown

CVE-2016-7449

Disclosure Date: February 06, 2017 (last updated November 26, 2024)
The TIFFGetField function in coders/tiff.c in GraphicsMagick 1.3.24 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a file containing an "unterminated" string.
0
Attacker Value
Unknown

CVE-2016-7447

Disclosure Date: February 06, 2017 (last updated November 26, 2024)
Heap-based buffer overflow in the EscapeParenthesis function in GraphicsMagick before 1.3.25 allows remote attackers to have unspecified impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2016-7800

Disclosure Date: February 06, 2017 (last updated November 26, 2024)
Integer underflow in the parse8BIM function in coders/meta.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted 8BIM chunk, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2016-7446

Disclosure Date: February 06, 2017 (last updated November 26, 2024)
Buffer overflow in the MVG and SVG rendering code in GraphicsMagick 1.3.24 allows remote attackers to have unspecified impact via unknown vectors. Note: This vulnerability exists due to an incomplete patch for CVE-2016-2317.
0
Attacker Value
Unknown

CVE-2016-7448

Disclosure Date: February 06, 2017 (last updated November 26, 2024)
The Utah RLE reader in GraphicsMagick before 1.3.25 allows remote attackers to cause a denial of service (CPU consumption or large memory allocations) via vectors involving the header information and the file size.
0
Attacker Value
Unknown

CVE-2016-2318

Disclosure Date: February 03, 2017 (last updated November 25, 2024)
GraphicsMagick 1.3.23 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted SVG file, related to the (1) DrawImage function in magick/render.c, (2) SVGStartElement function in coders/svg.c, and (3) TraceArcPath function in magick/render.c.
0
Attacker Value
Unknown

CVE-2016-2317

Disclosure Date: February 03, 2017 (last updated November 25, 2024)
Multiple buffer overflows in GraphicsMagick 1.3.23 allow remote attackers to cause a denial of service (crash) via a crafted SVG file, related to the (1) TracePoint function in magick/render.c, (2) GetToken function in magick/utility.c, and (3) GetTransformTokens function in coders/svg.c.
0
Attacker Value
Unknown

CVE-2016-5241

Disclosure Date: February 03, 2017 (last updated November 25, 2024)
magick/render.c in GraphicsMagick before 1.3.24 allows remote attackers to cause a denial of service (arithmetic exception and application crash) via a crafted svg file.
0
Attacker Value
Unknown

CVE-2016-9453

Disclosure Date: January 27, 2017 (last updated November 25, 2024)
The t2p_readwrite_pdf_image_tile function in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a JPEG file with a TIFFTAG_JPEGTABLES of length one.