6.8
CVSSv2

CVE-2007-4986

Published: 24/09/2007 Updated: 15/10/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple integer overflows in ImageMagick prior to 6.3.5-9 allow context-dependent malicious users to execute arbitrary code via a crafted (1) .dcm, (2) .dib, (3) .xbm, (4) .xcf, or (5) .xwd image file, which triggers a heap-based buffer overflow.

Vulnerable Product Search on Vulmon Subscribe to Product

imagemagick imagemagick 5.4.7

imagemagick imagemagick 5.4.8

imagemagick imagemagick 5.5.7.15

imagemagick imagemagick 6.0

imagemagick imagemagick 6.0.6

imagemagick imagemagick 6.0.6.2

imagemagick imagemagick 6.1.4

imagemagick imagemagick 6.1.5

imagemagick imagemagick 6.2.1

imagemagick imagemagick 6.2.2

imagemagick imagemagick 6.2.7

imagemagick imagemagick 6.2.8

imagemagick imagemagick 6.3.3_6

imagemagick imagemagick 6.3.4

imagemagick imagemagick 5.3.8

imagemagick imagemagick 5.4.2.3

imagemagick imagemagick 5.5.4

imagemagick imagemagick 5.5.6

imagemagick imagemagick 6.0.2.5

imagemagick imagemagick 6.0.3

imagemagick imagemagick 6.1

imagemagick imagemagick 6.1.1

imagemagick imagemagick 6.1.8

imagemagick imagemagick 6.2

imagemagick imagemagick 6.2.4

imagemagick imagemagick 6.2.4.3

imagemagick imagemagick 6.2.4.5

imagemagick imagemagick 6.3.1

imagemagick imagemagick 6.3.2

imagemagick imagemagick 5.3.3

imagemagick imagemagick 5.4.8.2_1.1.0

imagemagick imagemagick 5.5.3_.2_1.2.0

imagemagick imagemagick 6.0.1

imagemagick imagemagick 6.0.2

imagemagick imagemagick 6.0.7

imagemagick imagemagick 6.0.8

imagemagick imagemagick 6.1.6

imagemagick imagemagick 6.1.7

imagemagick imagemagick 6.2.3

imagemagick imagemagick 6.2.3.4

imagemagick imagemagick 6.2.9

imagemagick imagemagick 6.2.9.2

imagemagick imagemagick 5.4.3

imagemagick imagemagick 5.4.4.5

imagemagick imagemagick 5.5.6.0_20030409

imagemagick imagemagick 5.5.7

imagemagick imagemagick 6.0.4

imagemagick imagemagick 6.0.4.4

imagemagick imagemagick 6.0.5

imagemagick imagemagick 6.1.2

imagemagick imagemagick 6.1.3

imagemagick imagemagick 6.2.0.3

imagemagick imagemagick 6.2.0.7

imagemagick imagemagick 6.2.5

imagemagick imagemagick 6.2.6

imagemagick imagemagick 6.3.3_3

imagemagick imagemagick 6.3.3_5

Vendor Advisories

Multiple vulnerabilities were found in the image decoders of ImageMagick If a user or automated system were tricked into processing a malicious DCM, DIB, XBM, XCF, or XWD image, a remote attacker could execute arbitrary code with user privileges ...
Debian Bug report logs - #444267 CVE-2007-4985, CVE-2007-4986, CVE-2007-4987, CVE-2007-4988 multiple vulnerabilities Package: imagemagick; Maintainer for imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Source for imagemagick is src:imagemagick (PTS, buildd, popcon) Reported by: Nico G ...
Debian Bug report logs - #444266 CVE-2007-4985, CVE-2007-4986, CVE-2007-4988 multiple vulnerabilities Package: graphicsmagick; Maintainer for graphicsmagick is Laszlo Boszormenyi (GCS) <gcs@debianorg>; Source for graphicsmagick is src:graphicsmagick (PTS, buildd, popcon) Reported by: Nico Golde <nion@debianorg> Dat ...
Several vulnerabilities have been discovered in graphicsmagick, a collection of image processing tool, which can lead to the execution of arbitrary code, exposure of sensitive information or cause DoS The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-1667 Multiple integer overflows in XInitImage functi ...
Several vulnerabilities have been discovered in the imagemagick image manipulation programs which can lead to the execution of arbitrary code, exposure of sensitive information or cause DoS The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-1667 Multiple integer overflows in XInitImage function in xwd ...