5
CVSSv2

CVE-2008-3134

Published: 10/07/2008 Updated: 08/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Multiple unspecified vulnerabilities in GraphicsMagick prior to 1.2.4 allow remote malicious users to cause a denial of service (crash, infinite loop, or memory consumption) via (a) unspecified vectors in the (1) AVI, (2) AVS, (3) DCM, (4) EPT, (5) FITS, (6) MTV, (7) PALM, (8) RLA, and (9) TGA decoder readers; and (b) the GetImageCharacteristics function in magick/image.c, as reachable from a crafted (10) PNG, (11) JPEG, (12) BMP, or (13) TIFF file.

Vulnerable Product Search on Vulmon Subscribe to Product

graphicsmagick graphicsmagick 1.0.4

graphicsmagick graphicsmagick 1.0.6

graphicsmagick graphicsmagick 1.1.5

graphicsmagick graphicsmagick 1.1.6

graphicsmagick graphicsmagick 1.1.8

graphicsmagick graphicsmagick 1.1.11

graphicsmagick graphicsmagick 1.1.12

graphicsmagick graphicsmagick 1.2.18

graphicsmagick graphicsmagick 1.0

graphicsmagick graphicsmagick 1.1.3

graphicsmagick graphicsmagick 1.1.4

graphicsmagick graphicsmagick 1.1

graphicsmagick graphicsmagick 1.1.10

graphicsmagick graphicsmagick 1.1.9

graphicsmagick graphicsmagick 1.2

Vendor Advisories

Debian Bug report logs - #491439 CVE-2008-3134: several DoS Package: graphicsmagick; Maintainer for graphicsmagick is Laszlo Boszormenyi (GCS) <gcs@debianorg>; Source for graphicsmagick is src:graphicsmagick (PTS, buildd, popcon) Reported by: Steffen Joeris <steffenjoeris@skolelinuxde> Date: Sat, 19 Jul 2008 13:09 ...
Several vulnerabilities have been discovered in graphicsmagick, a collection of image processing tool, which can lead to the execution of arbitrary code, exposure of sensitive information or cause DoS The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-1667 Multiple integer overflows in XInitImage functi ...