Vulnerabilities
Vulnerable Software
Imagemagick:  Security Vulnerabilities
DCM decode in ImageMagick before 6.8.9-9 allows remote attackers to cause a denial of service (out-of-bounds read).
CVSS Score
5.5
EPSS Score
0.005
Published
2017-04-11
The JPEG decoder in ImageMagick before 6.8.9-9 allows local users to cause a denial of service (out-of-bounds memory access and crash).
CVSS Score
6.2
EPSS Score
0.001
Published
2017-04-11
coders/pnm.c in ImageMagick 6.9.0-1 Beta and earlier allows remote attackers to cause a denial of service (crash) via a crafted png file.
CVSS Score
6.5
EPSS Score
0.006
Published
2017-04-11
In ImageMagick 7.0.4-9, an infinite loop can occur because of a floating-point rounding error in some of the color algorithms. This affects ModulateHSL, ModulateHCL, ModulateHCLp, ModulateHSB, ModulateHSI, ModulateHSV, ModulateHWB, ModulateLCHab, and ModulateLCHuv.
CVSS Score
7.5
EPSS Score
0.005
Published
2017-04-10
coders/rle.c in ImageMagick 7.0.5-4 has an "outside the range of representable values of type unsigned char" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image.
CVSS Score
6.5
EPSS Score
0.004
Published
2017-04-09
coders/sun.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted sun file.
CVSS Score
6.5
EPSS Score
0.006
Published
2017-04-05
ImageMagick allows remote attackers to have unspecified impact via vectors related to error handling in sun files.
CVSS Score
9.8
EPSS Score
0.008
Published
2017-03-30
vision.c in ImageMagick allows remote attackers to cause a denial of service (infinite loop) via vectors related to "too many object."
CVSS Score
7.5
EPSS Score
0.012
Published
2017-03-30
ImageMagick allows remote attackers to cause a denial of service (segmentation fault and application crash) via a crafted pnm file.
CVSS Score
5.5
EPSS Score
0.005
Published
2017-03-30
ImageMagick allows remote attackers to cause a denial of service (file descriptor consumption) via a crafted file.
CVSS Score
5.5
EPSS Score
0.005
Published
2017-03-30


Contact Us

Shodan ® - All rights reserved