Show filters
456 Total Results
Displaying 51-60 of 456
Sort by:
Attacker Value
Unknown
CVE-2016-7447
Disclosure Date: February 06, 2017 (last updated November 26, 2024)
Heap-based buffer overflow in the EscapeParenthesis function in GraphicsMagick before 1.3.25 allows remote attackers to have unspecified impact via unknown vectors.
0
Attacker Value
Unknown
CVE-2016-7800
Disclosure Date: February 06, 2017 (last updated November 26, 2024)
Integer underflow in the parse8BIM function in coders/meta.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted 8BIM chunk, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2016-7446
Disclosure Date: February 06, 2017 (last updated November 26, 2024)
Buffer overflow in the MVG and SVG rendering code in GraphicsMagick 1.3.24 allows remote attackers to have unspecified impact via unknown vectors. Note: This vulnerability exists due to an incomplete patch for CVE-2016-2317.
0
Attacker Value
Unknown
CVE-2016-7448
Disclosure Date: February 06, 2017 (last updated November 26, 2024)
The Utah RLE reader in GraphicsMagick before 1.3.25 allows remote attackers to cause a denial of service (CPU consumption or large memory allocations) via vectors involving the header information and the file size.
0
Attacker Value
Unknown
CVE-2016-2318
Disclosure Date: February 03, 2017 (last updated November 25, 2024)
GraphicsMagick 1.3.23 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted SVG file, related to the (1) DrawImage function in magick/render.c, (2) SVGStartElement function in coders/svg.c, and (3) TraceArcPath function in magick/render.c.
0
Attacker Value
Unknown
CVE-2016-2317
Disclosure Date: February 03, 2017 (last updated November 25, 2024)
Multiple buffer overflows in GraphicsMagick 1.3.23 allow remote attackers to cause a denial of service (crash) via a crafted SVG file, related to the (1) TracePoint function in magick/render.c, (2) GetToken function in magick/utility.c, and (3) GetTransformTokens function in coders/svg.c.
0
Attacker Value
Unknown
CVE-2016-5241
Disclosure Date: February 03, 2017 (last updated November 25, 2024)
magick/render.c in GraphicsMagick before 1.3.24 allows remote attackers to cause a denial of service (arithmetic exception and application crash) via a crafted svg file.
0
Attacker Value
Unknown
CVE-2016-9453
Disclosure Date: January 27, 2017 (last updated November 25, 2024)
The t2p_readwrite_pdf_image_tile function in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write and crash) or possibly execute arbitrary code via a JPEG file with a TIFFTAG_JPEGTABLES of length one.
0
Attacker Value
Unknown
CVE-2016-6306
Disclosure Date: September 26, 2016 (last updated November 08, 2023)
The certificate parser in OpenSSL before 1.0.1u and 1.0.2 before 1.0.2i might allow remote attackers to cause a denial of service (out-of-bounds read) via crafted certificate operations, related to s3_clnt.c and s3_srvr.c.
0
Attacker Value
Unknown
CVE-2016-4303
Disclosure Date: September 26, 2016 (last updated January 16, 2025)
The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a non-hex character in a JSON string, which triggers a heap-based buffer overflow.
0