Vulnerabilities
Vulnerable Software
Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout() in info.c when vi->channels<=0, a similar issue to Mozilla bug 550184.
CVSS Score
9.8
EPSS Score
0.057
Published
2017-09-21
In Xiph.Org libvorbis 1.3.5, an out-of-bounds array read vulnerability exists in the function mapping0_forward() in mapping0.c, which may lead to DoS when operating on a crafted audio file with vorbis_analysis().
CVSS Score
6.5
EPSS Score
0.019
Published
2017-09-21
ImageMagick 7.0.7-0 Q16 has a NULL Pointer Dereference vulnerability in the function sixel_decode in coders/sixel.c.
CVSS Score
9.8
EPSS Score
0.026
Published
2017-09-21
ImageMagick 7.0.7-0 Q16 has a NULL Pointer Dereference vulnerability in the function PostscriptDelegateMessage in coders/ps.c.
CVSS Score
9.8
EPSS Score
0.032
Published
2017-09-21
ImageMagick 7.0.7-0 Q16 has a NULL Pointer Dereference vulnerability in the function sixel_output_create in coders/sixel.c.
CVSS Score
9.8
EPSS Score
0.032
Published
2017-09-21
In ImageMagick 7.0.7-4 Q16, an out of bounds read flaw related to ReadTIFFImage has been reported in coders/tiff.c. An attacker could possibly exploit this flaw to disclose potentially sensitive memory or cause an application crash.
CVSS Score
8.1
EPSS Score
0.023
Published
2017-09-20
ImageMagick 7.0.7-0 has a memory exhaustion issue in ReadSUNImage in coders/sun.c.
CVSS Score
6.5
EPSS Score
0.022
Published
2017-09-18
ImageMagick 7.0.7-0 has a NULL Pointer Dereference in TIFFIgnoreTags in coders/tiff.c.
CVSS Score
9.8
EPSS Score
0.026
Published
2017-09-18
ImageMagick 7.0.6-6 has a memory leak in ReadMATImage in coders/mat.c.
CVSS Score
6.5
EPSS Score
0.018
Published
2017-09-18
ImageMagick 7.0.6-6 has a large loop vulnerability in ReadWPGImage in coders/wpg.c, causing CPU exhaustion via a crafted wpg image file.
CVSS Score
6.5
EPSS Score
0.02
Published
2017-09-12


Contact Us

Shodan ® - All rights reserved