Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.107611
Categoría:Denial of Service
Título:ImageMagick < 7.0.8-25 Multiple Vulnerabilities - Windows
Resumen:ImageMagick is prone to multiple vulnerabilities.
Descripción:Summary:
ImageMagick is prone to multiple vulnerabilities.

Vulnerability Insight:
The following vulnerabilities exist:

- A denial of service (DoS) vulnerability exists in coders/png.c due to a missing null check, a memory leak.

- A denial of service (DoS) vulnerability exists in coders/sixel.c due to a memory leak in ReadSIXELImage.

- A denial of service (DoS) vulnerability exists in coders/pdf.c due to a memory leak in WritePDFImage.

- A denial of service (DoS) vulnerability exists in coders/dib.c due to a memory leak in WriteDIBImage.

Vulnerability Impact:
An unauthenticated, remote attacker can exploit these issues to cause the
application to stop responding.

Affected Software/OS:
ImageMagick prior to version 7.0.8-25.

Solution:
Upgrade to ImageMagick version 7.0.8-25 or later.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2018-16749
https://github.com/ImageMagick/ImageMagick/issues/1119
https://github.com/ImageMagick/ImageMagick6/commit/1007b98f8795ad4bea6bc5f68a32d83e982fdae4
https://lists.debian.org/debian-lts-announce/2018/10/msg00002.html
https://lists.debian.org/debian-lts-announce/2020/09/msg00007.html
https://usn.ubuntu.com/3785-1/
Common Vulnerability Exposure (CVE) ID: CVE-2019-7395
BugTraq ID: 106850
http://www.securityfocus.com/bid/106850
Debian Security Information: DSA-4712 (Google Search)
https://www.debian.org/security/2020/dsa-4712
https://github.com/ImageMagick/ImageMagick/commit/8a43abefb38c5e29138e1c9c515b313363541c06
https://github.com/ImageMagick/ImageMagick/issues/1451
SuSE Security Announcement: openSUSE-SU-2019:1141 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00034.html
SuSE Security Announcement: openSUSE-SU-2019:1320 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00006.html
https://usn.ubuntu.com/4034-1/
Common Vulnerability Exposure (CVE) ID: CVE-2019-7396
BugTraq ID: 106849
http://www.securityfocus.com/bid/106849
https://github.com/ImageMagick/ImageMagick/commit/748a03651e5b138bcaf160d15133de2f4b1b89ce
https://github.com/ImageMagick/ImageMagick/issues/1452
Common Vulnerability Exposure (CVE) ID: CVE-2019-7397
BugTraq ID: 106847
http://www.securityfocus.com/bid/106847
http://hg.graphicsmagick.org/hg/GraphicsMagick/rev/11ad3aeb8ab1
https://github.com/ImageMagick/ImageMagick/commit/306c1f0fa5754ca78efd16ab752f0e981d4f6b82
https://github.com/ImageMagick/ImageMagick/issues/1454
Common Vulnerability Exposure (CVE) ID: CVE-2019-7398
BugTraq ID: 106848
http://www.securityfocus.com/bid/106848
https://github.com/ImageMagick/ImageMagick/issues/1453
CopyrightCopyright (C) 2019 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.