Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
imagemagick imagemagick vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2017-11750
The ReadOneJNGImage function in coders/png.c in ImageMagick 6.9.9-4 and 7.0.6-4 allows remote malicious users to cause a denial of service (NULL pointer dereference) via a crafted file.
Imagemagick Imagemagick 7.0.6-4
Imagemagick Imagemagick 6.9.9-4
7.1
CVSSv3
CVE-2022-48541
A memory leak in ImageMagick 7.0.10-45 and 6.9.11-22 allows remote malicious users to perform a denial of service via the "identify -help" command.
Imagemagick Imagemagick 7.0.10-45
Imagemagick Imagemagick 6.9.11-22
Fedoraproject Fedora 38
Fedoraproject Fedora 39
8.8
CVSSv3
CVE-2019-17541
ImageMagick prior to 7.0.8-55 has a use-after-free in DestroyStringInfo in MagickCore/string.c because the error manager is mishandled in coders/jpeg.c.
Imagemagick Imagemagick
1 Github repository
6.5
CVSSv3
CVE-2014-8354
The HorizontalFilter function in resize.c in ImageMagick prior to 6.8.9-9 allows remote malicious users to cause a denial of service (out-of-bounds read) via a crafted image file.
Imagemagick Imagemagick
5.5
CVSSv3
CVE-2020-25663
A call to ConformPixelInfo() in the SetImageAlphaChannel() routine of /MagickCore/channel.c caused a subsequent heap-use-after-free or heap-buffer-overflow READ when GetPixelRed() or GetPixelBlue() was called. This could occur if an attacker is able to submit a malicious image fi...
Imagemagick Imagemagick
7.8
CVSSv3
CVE-2016-10052
Buffer overflow in the WriteProfile function in coders/jpeg.c in ImageMagick prior to 6.9.5-6 allows remote malicious users to cause a denial of service (application crash) or have other unspecified impact via a crafted file.
Imagemagick Imagemagick
7.8
CVSSv3
CVE-2016-10056
Buffer overflow in the sixel_decode function in coders/sixel.c in ImageMagick prior to 6.9.5-8 allows remote malicious users to cause a denial of service (application crash) or have other unspecified impact via a crafted file.
Imagemagick Imagemagick
6.5
CVSSv3
CVE-2016-10061
The ReadGROUP4Image function in coders/tiff.c in ImageMagick prior to 7.0.1-10 does not check the return value of the fputc function, which allows remote malicious users to cause a denial of service (crash) via a crafted image file.
Imagemagick Imagemagick
7.8
CVSSv3
CVE-2016-10063
Buffer overflow in coders/tiff.c in ImageMagick prior to 6.9.5-1 allows remote malicious users to cause a denial of service (application crash) or have other unspecified impact via a crafted file, related to extend validity.
Imagemagick Imagemagick
5.5
CVSSv3
CVE-2016-10046
Heap-based buffer overflow in the DrawImage function in magick/draw.c in ImageMagick prior to 6.9.5-5 allows remote malicious users to cause a denial of service (application crash) via a crafted image file.
Imagemagick Imagemagick
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
TCP
CVE-2024-4577
CVE-2024-2695
CVE-2024-31870
injection
CVE-2024-3813
arbitrary code
CVE-2024-27801
CVE-2024-30120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »