7.5
CVSSv3

CVE-2017-7619

Published: 10/04/2017 Updated: 03/10/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

In ImageMagick 7.0.4-9, an infinite loop can occur because of a floating-point rounding error in some of the color algorithms. This affects ModulateHSL, ModulateHCL, ModulateHCLp, ModulateHSB, ModulateHSI, ModulateHSV, ModulateHWB, ModulateLCHab, and ModulateLCHuv.

Vulnerable Product Search on Vulmon Subscribe to Product

imagemagick imagemagick 7.0.4-9

Vendor Advisories

Several security issues were fixed in ImageMagick ...
This update fixes several vulnerabilities in imagemagick: Various memory handling problems and cases of missing or incomplete input sanitising may result in denial of service, memory disclosure or the execution of arbitrary code if malformed RLE, ART, JNG, DDS, BMP, ICO, EPT, SUN, MTV, PICT, XWD, PCD, SFW, MAT, EXR, DCM, MNG, PCX or SVG files are p ...
In ImageMagick 704-9, an infinite loop can occur because of a floating-point rounding error in some of the color algorithms This affects ModulateHSL, ModulateHCL, ModulateHCLp, ModulateHSB, ModulateHSI, ModulateHSV, ModulateHWB, ModulateLCHab, and ModulateLCHuv ...
Debian Bug report logs - #863125 imagemagick: CVE-2017-9142: A crafted file revealed an assertion failure in blobc Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Mo ...
Debian Bug report logs - #862572 CVE-2017-8343: he ReadAAIImage function in aaic allows attackers to cause a denial of service (memory leak) via a crafted file Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES ...
Debian Bug report logs - #862636 CVE-2017-8357 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Mon, 15 May 2017 08:36:14 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #862633 CVE-2017-8354 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Mon, 15 May 2017 08:33:07 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #862577 CVE-2017-8347 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Sun, 14 May 2017 19:57:02 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #860736 CVE-2017-7943 Memory leak in svg Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Wed, 19 Apr 2017 14:21:02 UTC Severity: serious Tag ...
Debian Bug report logs - #862637 CVE-2017-8830 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Mon, 15 May 2017 08:39:02 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #863124 imagemagick: CVE-2017-9141: A crafted file revealed an assertion failure in profilec Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: ...
Debian Bug report logs - #862579 CVE-2017-8349 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Sun, 14 May 2017 20:00:10 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #862575 CVE-2017-8346 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Sun, 14 May 2017 19:54:01 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #862574 CVE-2017-8344 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Sun, 14 May 2017 19:51:14 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #862578 CVE-2017-8348 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Sun, 14 May 2017 20:00:02 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #862634 CVE-2017-8355 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Mon, 15 May 2017 08:36:02 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #862587 CVE-2017-8350 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Sun, 14 May 2017 21:00:02 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #863123 imagemagick: CVE-2017-9143: Specially crafted arts file could lead to memory leak Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Mon ...
Debian Bug report logs - #862635 CVE-2017-8356 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Mon, 15 May 2017 08:36:08 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #862967 imagemagick: CVE-2017-9098: use of uninitialized memory in RLE decoder Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 19 May 2017 12:1 ...
Debian Bug report logs - #862653 CVE-2017-8765 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Mon, 15 May 2017 10:15:01 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #860734 CVE-2017-7941 memory leak in sgi Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Wed, 19 Apr 2017 14:09:02 UTC Severity: serious Tag ...
Debian Bug report logs - #862573 CVE-2017-8345 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Sun, 14 May 2017 19:51:08 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #862632 CVE-2017-8353 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Mon, 15 May 2017 08:33:01 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #862590 CVE-2017-8352 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Sun, 14 May 2017 21:03:01 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #862589 CVE-2017-8351 Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Sun, 14 May 2017 21:00:11 UTC Severity: important Tags: security Foun ...
Debian Bug report logs - #859771 imagemagick: CVE-2017-7606: Undefined behavoir in rle Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Fri, 7 Apr 2017 10:21:01 UTC ...
Debian Bug report logs - #859769 imagemagick: CVE-2017-7619: Infinite loop due to rounding error Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Fri, 7 Apr 2017 10:0 ...
Debian Bug report logs - #863126 imagemagick: CVE-2017-9144: Check for EOF conditions for RLE image format Package: src:imagemagick; Maintainer for src:imagemagick is ImageMagick Packaging Team <pkg-gmagick-im-team@listsaliothdebianorg>; Reported by: Bastien ROUCARIES <roucariesbastien@gmailcom> Date: Mon, 22 May ...