Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
imagemagick imagemagick 7.0.8-26 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2017-12806
In ImageMagick 7.0.6-6, a memory exhaustion vulnerability was found in the function format8BIM, which allows malicious users to cause a denial of service.
Imagemagick Imagemagick 7.0.6-6
1 Github repository
6.5
CVSSv3
CVE-2017-11166
The ReadXWDImage function in coders\xwd.c in ImageMagick 7.0.5-6 has a memory leak vulnerability that can cause memory exhaustion via a crafted length (number of color-map entries) field in the header of an XWD file.
Imagemagick Imagemagick 7.0.5-6
6.5
CVSSv3
CVE-2018-15607
In ImageMagick 7.0.8-11 Q16, a tiny input file 0x50 0x36 0x36 0x36 0x36 0x4c 0x36 0x38 0x36 0x36 0x36 0x36 0x36 0x36 0x1f 0x35 0x50 0x00 can result in a hang of several minutes during which CPU and memory resources are consumed until ultimately an attempted large memory allocatio...
Imagemagick Imagemagick 7.0.8-11
5.5
CVSSv3
CVE-2019-12974
A NULL pointer dereference in the function ReadPANGOImage in coders/pango.c and the function ReadVIDImage in coders/vid.c in ImageMagick 7.0.8-34 allows remote malicious users to cause a denial of service via a crafted image.
Imagemagick Imagemagick 7.0.8-34
7.8
CVSSv3
CVE-2019-12978
ImageMagick 7.0.8-34 has a "use of uninitialized value" vulnerability in the ReadPANGOImage function in coders/pango.c.
Imagemagick Imagemagick 7.0.8-34
6.5
CVSSv3
CVE-2019-14980
In ImageMagick 7.x prior to 7.0.8-42 and 6.x prior to 6.9.10-42, there is a use after free vulnerability in the UnmapBlob function that allows an malicious user to cause a denial of service by sending a crafted file.
Imagemagick Imagemagick
Opensuse Leap 15.0
Opensuse Leap 15.1
8.1
CVSSv3
CVE-2019-10650
In ImageMagick 7.0.8-36 Q16, there is a heap-based buffer over-read in the function WriteTIFFImage of coders/tiff.c, which allows an malicious user to cause a denial of service or information disclosure via a crafted image file.
Imagemagick Imagemagick 7.0.8-36
Debian Debian Linux 9.0
8.8
CVSSv3
CVE-2019-9956
In ImageMagick 7.0.8-35 Q16, there is a stack-based buffer overflow in the function PopHexPixel of coders/ps.c, which allows an malicious user to cause a denial of service or code execution via a crafted image file.
Imagemagick Imagemagick 7.0.8-35
Debian Debian Linux 9.0
2 Github repositories
5.5
CVSSv3
CVE-2019-13133
ImageMagick prior to 7.0.8-50 has a memory leak vulnerability in the function ReadBMPImage in coders/bmp.c.
Imagemagick Imagemagick
Opensuse Leap 15.0
Opensuse Leap 15.1
5.5
CVSSv3
CVE-2019-13134
ImageMagick prior to 7.0.8-50 has a memory leak vulnerability in the function ReadVIFFImage in coders/viff.c.
Imagemagick Imagemagick
Opensuse Leap 15.0
Opensuse Leap 15.1
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
SSRF
CVE-2023-52162
CVE-2024-23670
CVE-2024-5404
man-in-the-middle
CVE-2024-5214
CVE-2024-4358
CVE-2024-20696
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »