7.5
CVSSv2

CVE-2006-2440

Published: 18/05/2006 Updated: 12/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Heap-based buffer overflow in the libMagick component of ImageMagick 6.0.6.2 might allow malicious users to execute arbitrary code via an image index array that triggers the overflow during filename glob expansion by the ExpandFilenames function.

Vulnerable Product Search on Vulmon Subscribe to Product

imagemagick imagemagick 6.2.4

imagemagick imagemagick 6.0.6.2

Vendor Advisories

Several remote vulnerabilities have been discovered in Imagemagick, a collection of image manipulation tools, which may lead to the execution of arbitrary code The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2006-2440 Eero Häkkinen discovered that the display tool allocates insufficient memory for ...