10
CVSSv2

CVE-2008-6071

Published: 10/02/2009 Updated: 08/08/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer overflow in the DecodeImage function in coders/pict.c in GraphicsMagick prior to 1.1.14, and 1.2.x prior to 1.2.3, allows remote malicious users to cause a denial of service (crash) or possibly execute arbitrary code via a crafted PICT image. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

graphicsmagick graphicsmagick 1.1.11

graphicsmagick graphicsmagick 1.1.12

graphicsmagick graphicsmagick 1.1.3

graphicsmagick graphicsmagick 1.1.10

graphicsmagick graphicsmagick 1.0.4

graphicsmagick graphicsmagick 1.1

graphicsmagick graphicsmagick 1.1.1

graphicsmagick graphicsmagick 1.1.7

graphicsmagick graphicsmagick 1.1.8

graphicsmagick graphicsmagick 1.1.4

graphicsmagick graphicsmagick 1.2.2

graphicsmagick graphicsmagick

graphicsmagick graphicsmagick 1.1.2

graphicsmagick graphicsmagick 1.1.9

graphicsmagick graphicsmagick 1.2

graphicsmagick graphicsmagick 1.2.1

graphicsmagick graphicsmagick 1.0.6

graphicsmagick graphicsmagick 1.0

graphicsmagick graphicsmagick 1.1.5

graphicsmagick graphicsmagick 1.1.6

Vendor Advisories

Several vulnerabilities have been discovered in graphicsmagick, a collection of image processing tool, which can lead to the execution of arbitrary code, exposure of sensitive information or cause DoS The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2007-1667 Multiple integer overflows in XInitImage functi ...