Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
imagemagick imagemagick 7.0.8-34 vulnerabilities and exploits
(subscribe to this query)
5.5
CVSSv3
CVE-2019-12974
A NULL pointer dereference in the function ReadPANGOImage in coders/pango.c and the function ReadVIDImage in coders/vid.c in ImageMagick 7.0.8-34 allows remote malicious users to cause a denial of service via a crafted image.
Imagemagick Imagemagick 7.0.8-34
7.8
CVSSv3
CVE-2019-12977
ImageMagick 7.0.8-34 has a "use of uninitialized value" vulnerability in the WriteJP2Image function in coders/jp2.c.
Imagemagick Imagemagick 7.0.8-34
7.8
CVSSv3
CVE-2019-12978
ImageMagick 7.0.8-34 has a "use of uninitialized value" vulnerability in the ReadPANGOImage function in coders/pango.c.
Imagemagick Imagemagick 7.0.8-34
5.5
CVSSv3
CVE-2019-12975
ImageMagick 7.0.8-34 has a memory leak vulnerability in the WriteDPXImage function in coders/dpx.c.
Imagemagick Imagemagick 7.0.8-34
Debian Debian Linux 10.0
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 19.04
Canonical Ubuntu Linux 19.10
Canonical Ubuntu Linux 16.04
Opensuse Leap 15.0
Opensuse Leap 15.1
5.5
CVSSv3
CVE-2019-12976
ImageMagick 7.0.8-34 has a memory leak in the ReadPCLImage function in coders/pcl.c.
Imagemagick Imagemagick 7.0.8-34
Debian Debian Linux 10.0
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 19.04
Canonical Ubuntu Linux 19.10
Canonical Ubuntu Linux 16.04
Opensuse Leap 15.0
Opensuse Leap 15.1
7.8
CVSSv3
CVE-2019-12979
ImageMagick 7.0.8-34 has a "use of uninitialized value" vulnerability in the SyncImageSettings function in MagickCore/image.c. This is related to AcquireImage in magick/image.c.
Imagemagick Imagemagick 7.0.8-34
Debian Debian Linux 9.0
Debian Debian Linux 10.0
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 18.04
Canonical Ubuntu Linux 19.04
Canonical Ubuntu Linux 19.10
Opensuse Leap 15.0
Opensuse Leap 15.1
9.8
CVSSv3
CVE-2017-13139
In ImageMagick prior to 6.9.9-0 and 7.x prior to 7.0.6-1, the ReadOneMNGImage function in coders/png.c has an out-of-bounds read with the MNG CLIP chunk.
Imagemagick Imagemagick 7.0.1-4
Imagemagick Imagemagick 7.0.5-5
Imagemagick Imagemagick 7.0.1-1
Imagemagick Imagemagick 7.0.4-10
Imagemagick Imagemagick 7.0.3-6
Imagemagick Imagemagick 7.0.2-1
Imagemagick Imagemagick 7.0.1-8
Imagemagick Imagemagick 7.0.3-8
Imagemagick Imagemagick 7.0.4-4
Imagemagick Imagemagick 7.0.1-5
Imagemagick Imagemagick 7.0.2-0
Imagemagick Imagemagick 7.0.5-1
Imagemagick Imagemagick 7.0.1-3
Imagemagick Imagemagick 7.0.4-0
Imagemagick Imagemagick 7.0.5-0
Imagemagick Imagemagick 7.0.3-7
Imagemagick Imagemagick 7.0.1-2
Imagemagick Imagemagick 7.0.2-4
Imagemagick Imagemagick 7.0.3-9
Imagemagick Imagemagick 7.0.3-5
Imagemagick Imagemagick 7.0.5-6
Imagemagick Imagemagick 7.0.2-6
9.8
CVSSv3
CVE-2018-16328
In ImageMagick prior to 7.0.8-8, a NULL pointer dereference exists in the CheckEventLogging function in MagickCore/log.c.
Imagemagick Imagemagick
8.8
CVSSv3
CVE-2019-17541
ImageMagick prior to 7.0.8-55 has a use-after-free in DestroyStringInfo in MagickCore/string.c because the error manager is mishandled in coders/jpeg.c.
Imagemagick Imagemagick
1 Github repository
8.8
CVSSv3
CVE-2019-15140
coders/mat.c in ImageMagick 7.0.8-43 Q16 allows remote malicious users to cause a denial of service (use-after-free and application crash) or possibly have unspecified other impact by crafting a Matlab image file that is mishandled in ReadImage in MagickCore/constitute.c.
Imagemagick Imagemagick 7.0.8-43
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-0044
client side
CVE-2021-47601
deserialization
CVE-2024-34994
encryption
CVE-2021-47609
CVE-2024-37079
CVE-2024-38608
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »