Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
imagemagick imagemagick - vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2019-17541
ImageMagick prior to 7.0.8-55 has a use-after-free in DestroyStringInfo in MagickCore/string.c because the error manager is mishandled in coders/jpeg.c.
Imagemagick Imagemagick
1 Github repository
8.8
CVSSv3
CVE-2019-17547
In ImageMagick prior to 7.0.8-62, TraceBezier in MagickCore/draw.c has a use-after-free.
Imagemagick Imagemagick
5.5
CVSSv3
CVE-2014-8562
DCM decode in ImageMagick prior to 6.8.9-9 allows remote malicious users to cause a denial of service (out-of-bounds read).
Imagemagick Imagemagick
6.2
CVSSv3
CVE-2014-8716
The JPEG decoder in ImageMagick prior to 6.8.9-9 allows local users to cause a denial of service (out-of-bounds memory access and crash).
Imagemagick Imagemagick
6.5
CVSSv3
CVE-2016-7523
coders/meta.c in ImageMagick allows remote malicious users to cause a denial of service (out-of-bounds read) via a crafted file.
Imagemagick Imagemagick -
6.5
CVSSv3
CVE-2016-7524
coders/meta.c in ImageMagick allows remote malicious users to cause a denial of service (out-of-bounds read) via a crafted file.
Imagemagick Imagemagick -
6.5
CVSSv3
CVE-2016-7537
MagickCore/memory.c in ImageMagick allows remote malicious users to cause a denial of service (out-of-bounds access) via a crafted PDB file.
Imagemagick Imagemagick -
7.5
CVSSv3
CVE-2016-10252
Memory leak in the IsOptionMember function in MagickCore/option.c in ImageMagick prior to 6.9.2-2, as used in ODR-PadEnc and other products, allows malicious users to trigger memory consumption.
Imagemagick Imagemagick
5.5
CVSSv3
CVE-2020-25663
A call to ConformPixelInfo() in the SetImageAlphaChannel() routine of /MagickCore/channel.c caused a subsequent heap-use-after-free or heap-buffer-overflow READ when GetPixelRed() or GetPixelBlue() was called. This could occur if an attacker is able to submit a malicious image fi...
Imagemagick Imagemagick
7.1
CVSSv3
CVE-2022-1114
A heap-use-after-free flaw was found in ImageMagick's RelinquishDCMInfo() function of dcm.c file. This vulnerability is triggered when an attacker passes a specially crafted DICOM image file to ImageMagick for conversion, potentially leading to information disclosure and a d...
Imagemagick Imagemagick
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-32976
CVE-2024-33557
CVE-2024-36801
CVE-2024-35654
authentication bypass
CVE-2024-24919
CSRF
code execution
CVE-2024-27348
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »