Show filters
120 Total Results
Displaying 81-90 of 120
Sort by:
Attacker Value
Unknown
CVE-2017-11403
Disclosure Date: July 18, 2017 (last updated November 26, 2024)
The ReadMNGImage function in coders/png.c in GraphicsMagick 1.3.26 has an out-of-order CloseBlob call, resulting in a use-after-free via a crafted file.
0
Attacker Value
Unknown
CVE-2017-11140
Disclosure Date: July 10, 2017 (last updated November 26, 2024)
The ReadJPEGImage function in coders/jpeg.c in GraphicsMagick 1.3.26 creates a pixel cache before a successful read of a scanline, which allows remote attackers to cause a denial of service (resource consumption) via crafted JPEG files.
0
Attacker Value
Unknown
CVE-2017-11139
Disclosure Date: July 10, 2017 (last updated November 26, 2024)
GraphicsMagick 1.3.26 has double free vulnerabilities in the ReadOneJNGImage() function in coders/png.c.
0
Attacker Value
Unknown
CVE-2017-11102
Disclosure Date: July 07, 2017 (last updated November 26, 2024)
The ReadOneJNGImage function in coders/png.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (application crash) during JNG reading via a zero-length color_image data structure.
0
Attacker Value
Unknown
CVE-2017-10799
Disclosure Date: July 03, 2017 (last updated November 26, 2024)
When GraphicsMagick 1.3.25 processes a DPX image (with metadata indicating a large width) in coders/dpx.c, a denial of service (OOM) can occur in ReadDPXImage().
0
Attacker Value
Unknown
CVE-2017-10800
Disclosure Date: July 03, 2017 (last updated November 26, 2024)
When GraphicsMagick 1.3.25 processes a MATLAB image in coders/mat.c, it can lead to a denial of service (OOM) in ReadMATImage() if the size specified for a MAT Object is larger than the actual amount of data.
0
Attacker Value
Unknown
CVE-2017-10794
Disclosure Date: July 02, 2017 (last updated November 26, 2024)
When GraphicsMagick 1.3.25 processes an RGB TIFF picture (with metadata indicating a single sample per pixel) in coders/tiff.c, a buffer overflow occurs, related to QuantumTransferMode.
0
Attacker Value
Unknown
CVE-2017-9098
Disclosure Date: May 19, 2017 (last updated November 26, 2024)
ImageMagick before 7.0.5-2 and GraphicsMagick before 1.3.24 use uninitialized memory in the RLE decoder, allowing an attacker to leak sensitive information from process memory space, as demonstrated by remote attacks against ImageMagick code in a long-running server process that converts image data on behalf of multiple users. This is caused by a missing initialization step in the ReadRLEImage function in coders/rle.c.
0
Attacker Value
Unknown
CVE-2017-6335
Disclosure Date: March 14, 2017 (last updated November 26, 2024)
The QuantumTransferMode function in coders/tiff.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a small samples per pixel value in a CMYKA TIFF file.
0
Attacker Value
Unknown
CVE-2016-9830
Disclosure Date: March 01, 2017 (last updated November 26, 2024)
The MagickRealloc function in memory.c in Graphicsmagick 1.3.25 allows remote attackers to cause a denial of service (crash) via large dimensions in a jpeg image.
0