Show filters
11 Total Results
Displaying 1-10 of 11
Sort by:
Attacker Value
Unknown

CVE-2007-4985

Disclosure Date: September 24, 2007 (last updated October 04, 2023)
ImageMagick before 6.3.5-9 allows context-dependent attackers to cause a denial of service via a crafted image file that triggers (1) an infinite loop in the ReadDCMImage function, related to ReadBlobByte function calls; or (2) an infinite loop in the ReadXCFImage function, related to ReadBlobMSBLong function calls.
0
Attacker Value
Unknown

CVE-2007-4986

Disclosure Date: September 24, 2007 (last updated October 04, 2023)
Multiple integer overflows in ImageMagick before 6.3.5-9 allow context-dependent attackers to execute arbitrary code via a crafted (1) .dcm, (2) .dib, (3) .xbm, (4) .xcf, or (5) .xwd image file, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2007-4987

Disclosure Date: September 24, 2007 (last updated October 04, 2023)
Off-by-one error in the ReadBlobString function in blob.c in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code via a crafted image file, which triggers the writing of a '\0' character to an out-of-bounds address.
0
Attacker Value
Unknown

CVE-2006-4144

Disclosure Date: August 15, 2006 (last updated October 04, 2023)
Integer overflow in the ReadSGIImage function in sgi.c in ImageMagick before 6.2.9 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via large (1) bytes_per_pixel, (2) columns, and (3) rows values, which trigger a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2006-2440

Disclosure Date: May 18, 2006 (last updated October 04, 2023)
Heap-based buffer overflow in the libMagick component of ImageMagick 6.0.6.2 might allow attackers to execute arbitrary code via an image index array that triggers the overflow during filename glob expansion by the ExpandFilenames function.
0
Attacker Value
Unknown

CVE-2005-3582

Disclosure Date: November 16, 2005 (last updated February 22, 2025)
ImageMagick before 6.2.4.2-r1 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing objects in it to be loaded at runtime.
0
Attacker Value
Unknown

CVE-2005-1739

Disclosure Date: May 24, 2005 (last updated February 22, 2025)
The XWD Decoder in ImageMagick before 6.2.2.3, and GraphicsMagick before 1.1.6-r1, allows remote attackers to cause a denial of service (infinite loop) via an image with a zero color mask.
0
Attacker Value
Unknown

CVE-2005-0005

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Heap-based buffer overflow in psd.c for ImageMagick 6.1.0, 6.1.7, and possibly earlier versions allows remote attackers to execute arbitrary code via a .PSD image file with a large number of layers.
0
Attacker Value
Unknown

CVE-2005-1275

Disclosure Date: April 25, 2005 (last updated February 22, 2025)
Heap-based buffer overflow in the ReadPNMImage function in pnm.c for ImageMagick 6.2.1 and earlier allows remote attackers to cause a denial of service (application crash) via a PNM file with a small colors value.
0
Attacker Value
Unknown

CVE-2005-0761

Disclosure Date: March 23, 2005 (last updated February 22, 2025)
Unknown vulnerability in ImageMagick before 6.1.8 allows remote attackers to cause a denial of service (application crash) via a crafted PSD file.
0