Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
imagemagick vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2017-11750
The ReadOneJNGImage function in coders/png.c in ImageMagick 6.9.9-4 and 7.0.6-4 allows remote malicious users to cause a denial of service (NULL pointer dereference) via a crafted file.
Imagemagick Imagemagick 6.9.9-4
Imagemagick Imagemagick 7.0.6-4
4.3
CVSSv2
CVE-2017-18272
In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-25, there is a use-after-free in ReadOneMNGImage in coders/png.c, which allows malicious users to cause a denial of service via a crafted MNG image file that is mishandled in an MngInfoDiscardObject call.
Imagemagick Imagemagick
NA
CVE-2021-20224
An integer overflow issue exists in ImageMagick's ExportIndexQuantum() function in MagickCore/quantum-export.c. Function calls to GetPixelIndex() could result in values outside the range of representable for the 'unsigned char'. When ImageMagick processes a crafted...
Imagemagick Imagemagick
3.6
CVSSv2
CVE-2021-39212
ImageMagick is free software delivered as a ready-to-run binary distribution or as source code that you may use, copy, modify, and distribute in both open and proprietary applications. In affected versions and in certain cases, Postscript files could be read and written when spec...
Imagemagick Imagemagick
4.3
CVSSv2
CVE-2016-7523
coders/meta.c in ImageMagick allows remote malicious users to cause a denial of service (out-of-bounds read) via a crafted file.
Imagemagick Imagemagick -
4.3
CVSSv2
CVE-2016-7537
MagickCore/memory.c in ImageMagick allows remote malicious users to cause a denial of service (out-of-bounds access) via a crafted PDB file.
Imagemagick Imagemagick -
4.3
CVSSv2
CVE-2017-11447
The ReadSCREENSHOTImage function in coders/screenshot.c in ImageMagick prior to 7.0.6-1 has memory leaks, causing denial of service.
Imagemagick Imagemagick
5
CVSSv2
CVE-2016-10067
magick/memory.c in ImageMagick prior to 6.9.4-5 allows remote malicious users to cause a denial of service (application crash) via vectors involving "too many exceptions," which trigger a buffer overflow.
Imagemagick Imagemagick
4.3
CVSSv2
CVE-2016-10062
The ReadGROUP4Image function in coders/tiff.c in ImageMagick does not check the return value of the fwrite function, which allows remote malicious users to cause a denial of service (application crash) via a crafted file.
Imagemagick Imagemagick -
7.8
CVSSv2
CVE-2016-10252
Memory leak in the IsOptionMember function in MagickCore/option.c in ImageMagick prior to 6.9.2-2, as used in ODR-PadEnc and other products, allows malicious users to trigger memory consumption.
Imagemagick Imagemagick
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2020-4463
CVE-2024-29895
inject
CVE-2023-52689
CVE-2024-5049
CVE-2024-5051
privilege escalation
physical
CVE-2023-52676
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »