4.3
CVSSv2

CVE-2014-9845

Published: 20/03/2017 Updated: 30/10/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

The ReadDIBImage function in coders/dib.c in ImageMagick allows remote malicious users to cause a denial of service (crash) via a corrupted dib file.

Vulnerable Product Search on Vulmon Subscribe to Product

opensuse leap 42.2

opensuse project suse linux enterprise server 11.0

suse studio onsite 1.3

opensuse project suse linux enterprise software development kit 12.0

opensuse project suse linux enterprise workstation extension 12.0

opensuse project suse linux enterprise server 12.0

opensuse project suse linux enterprise software development kit 11.0

opensuse project leap 42.1

opensuse opensuse 13.2

opensuse project suse linux enterprise debuginfo 11.0

opensuse project suse linux enterprise desktop 12.0

canonical ubuntu linux 12.04

canonical ubuntu linux 14.04

canonical ubuntu linux 16.04

canonical ubuntu linux 16.10

imagemagick imagemagick 6.8.8-9

Vendor Advisories

Several security issues were fixed in ImageMagick ...
The ReadDIBImage function in coders/dibc in ImageMagick allows remote attackers to cause a denial of service (crash) via a corrupted dib file ...