Show filters
456 Total Results
Displaying 51-60 of 456
Sort by:
Attacker Value
Unknown

CVE-2016-7447

Disclosure Date: February 06, 2017 (last updated November 26, 2024)
Heap-based buffer overflow in the EscapeParenthesis function in GraphicsMagick before 1.3.25 allows remote attackers to have unspecified impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2016-7800

Disclosure Date: February 06, 2017 (last updated November 26, 2024)
Integer underflow in the parse8BIM function in coders/meta.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted 8BIM chunk, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2016-7446

Disclosure Date: February 06, 2017 (last updated November 26, 2024)
Buffer overflow in the MVG and SVG rendering code in GraphicsMagick 1.3.24 allows remote attackers to have unspecified impact via unknown vectors. Note: This vulnerability exists due to an incomplete patch for CVE-2016-2317.
0
Attacker Value
Unknown

CVE-2016-7448

Disclosure Date: February 06, 2017 (last updated November 26, 2024)
The Utah RLE reader in GraphicsMagick before 1.3.25 allows remote attackers to cause a denial of service (CPU consumption or large memory allocations) via vectors involving the header information and the file size.
0
Attacker Value
Unknown

CVE-2016-2318

Disclosure Date: February 03, 2017 (last updated November 25, 2024)
GraphicsMagick 1.3.23 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted SVG file, related to the (1) DrawImage function in magick/render.c, (2) SVGStartElement function in coders/svg.c, and (3) TraceArcPath function in magick/render.c.
0
Attacker Value
Unknown

CVE-2016-2317

Disclosure Date: February 03, 2017 (last updated November 25, 2024)
Multiple buffer overflows in GraphicsMagick 1.3.23 allow remote attackers to cause a denial of service (crash) via a crafted SVG file, related to the (1) TracePoint function in magick/render.c, (2) GetToken function in magick/utility.c, and (3) GetTransformTokens function in coders/svg.c.
0
Attacker Value
Unknown

CVE-2016-5241

Disclosure Date: February 03, 2017 (last updated November 25, 2024)
magick/render.c in GraphicsMagick before 1.3.24 allows remote attackers to cause a denial of service (arithmetic exception and application crash) via a crafted svg file.
0
Attacker Value
Unknown

CVE-2016-9453

Disclosure Date: January 27, 2017 (last updated November 25, 2024)
The t2p_readwrite_pdf_image_tile function in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a JPEG file with a TIFFTAG_JPEGTABLES of length one.
Attacker Value
Unknown

CVE-2016-6306

Disclosure Date: September 26, 2016 (last updated November 08, 2023)
The certificate parser in OpenSSL before 1.0.1u and 1.0.2 before 1.0.2i might allow remote attackers to cause a denial of service (out-of-bounds read) via crafted certificate operations, related to s3_clnt.c and s3_srvr.c.
Attacker Value
Unknown

CVE-2016-4303

Disclosure Date: September 26, 2016 (last updated January 16, 2025)
The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a non-hex character in a JSON string, which triggers a heap-based buffer overflow.