Vulnerability index

Browse CVEs

492 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Imagemagick MEDIUM 5.5
CVE-2014-9915

Off-by-one error in ImageMagick before 6.6.0-4 allows remote attackers to cause a denial of service (application crash) via a crafted 8BIM profile.

Fix: after 6.6.0-3
Fix from $1,600 2017-03-23
Imagemagick MEDIUM 5.5
CVE-2016-10046

Heap-based buffer overflow in the DrawImage function in magick/draw.c in ImageMagick before 6.9.5-5 allows remote attackers to cause a denial of serv…

Fix: after 6.9.5-4
Fix from $1,600 2017-03-23
Imagemagick MEDIUM 5.5
CVE-2016-10047

Memory leak in the NewXMLTree function in magick/xml-tree.c in ImageMagick before 6.9.4-7 allows remote attackers to cause a denial of service (memor…

Fix: after 6.9.4-6
Fix from $1,600 2017-03-23
Imagemagick MEDIUM 5.5
CVE-2016-10053

The WriteTIFFImage function in coders/tiff.c in ImageMagick before 6.9.5-8 allows remote attackers to cause a denial of service (divide-by-zero error…

Fix: after 6.9.5-7
Fix from $1,600 2017-03-23
Imagemagick MEDIUM 5.5
CVE-2016-10058

Memory leak in the ReadPSDLayers function in coders/psd.c in ImageMagick before 6.9.6-3 allows remote attackers to cause a denial of service (memory …

Fix: after 6.9.6-2
Fix from $1,600 2017-03-23
Imagemagick HIGH 7.8
CVE-2014-9832

Heap overflow in ImageMagick 6.8.9-9 via a crafted pcx file.

Mitigation only
Fix from $1,950 2017-03-22
Imagemagick HIGH 7.8
CVE-2014-9833

Heap overflow in ImageMagick 6.8.9-9 via a crafted psd file.

Mitigation only
Fix from $1,950 2017-03-22
Imagemagick HIGH 7.8
CVE-2014-9834

Heap overflow in ImageMagick 6.8.9-9 via a crafted pict file.

Mitigation only
Fix from $1,950 2017-03-22
Imagemagick HIGH 7.8
CVE-2014-9835

Heap overflow in ImageMagick 6.8.9-9 via a crafted wpf file.

Mitigation only
Fix from $1,950 2017-03-22
Imagemagick HIGH 7.5
CVE-2014-9839

magick/colormap-private.h in ImageMagick 6.8.9-9 allows remote attackers to cause a denial of service (out-of-bounds access).

Mitigation only
Fix from $1,950 2017-03-22
Imagemagick MEDIUM 5.5
CVE-2014-9836

ImageMagick 6.8.9-9 allows remote attackers to cause a denial of service via a crafted xpm file.

Mitigation only
Fix from $1,600 2017-03-22
Imagemagick MEDIUM 5.5
CVE-2014-9838

magick/cache.c in ImageMagick 6.8.9-9 allows remote attackers to cause a denial of service (crash).

Mitigation only
Fix from $1,600 2017-03-22
Imagemagick MEDIUM 5.5
CVE-2014-9840

ImageMagick 6.8.9-9 allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted palm file.

Mitigation only
Fix from $1,600 2017-03-22
Imagemagick CRITICAL 9.8
CVE-2014-9852

distribute-cache.c in ImageMagick re-uses objects after they have been destroyed, which allows remote attackers to have unspecified impact via unspec…

Fix: 6.9.4-0+
Fix from $2,300 2017-03-17
Imagemagick CRITICAL 9.8
CVE-2016-5239

The gnuplot delegate functionality in ImageMagick before 6.9.4-0 and GraphicsMagick allows remote attackers to execute arbitrary commands via unspeci…

Fix: after 6.9.3-9
Fix from $2,300 2017-03-15
Imagemagick HIGH 7.5
CVE-2015-8895

Integer overflow in coders/icon.c in ImageMagick 6.9.1-3 and later allows remote attackers to cause a denial of service (application crash) via a cra…

Patch available
Fix from $1,950 2017-03-15
Imagemagick MEDIUM 5.5
CVE-2015-8894

Double free vulnerability in coders/tga.c in ImageMagick 7.0.0 and later allows remote attackers to cause a denial of service (application crash) via…

Patch available
Fix from $1,600 2017-03-15
Imagemagick MEDIUM 5.5
CVE-2015-8897

The SpliceImage function in MagickCore/transform.c in ImageMagick before 6.9.2-4 allows remote attackers to cause a denial of service (application cr…

Fix: after 6.9.2-3
Fix from $1,600 2017-03-15
Imagemagick MEDIUM 5.5
CVE-2015-8898

The WriteImages function in magick/constitute.c in ImageMagick before 6.9.2-4 allows remote attackers to cause a denial of service (NULL pointer dere…

Fix: after 6.9.2-3
Fix from $1,600 2017-03-15
Imagemagick HIGH 7.5
CVE-2016-10252

Memory leak in the IsOptionMember function in MagickCore/option.c in ImageMagick before 6.9.2-2, as used in ODR-PadEnc and other products, allows att…

Fix: after 6.9.2-1
Fix from $1,950 2017-03-14
Imagemagick HIGH 7.5
CVE-2017-6497

An issue was discovered in ImageMagick 6.9.7. A specially crafted psd file could lead to a NULL pointer dereference (thus, a DoS).

Patch available
Fix from $1,950 2017-03-06
Imagemagick MEDIUM 5.5
CVE-2017-6501

An issue was discovered in ImageMagick 6.9.7. A specially crafted xcf file could lead to a NULL pointer dereference.

Patch available
Fix from $1,600 2017-03-06
Imagemagick MEDIUM 5.5
CVE-2017-6502

An issue was discovered in ImageMagick 6.9.7. A specially crafted webp file could lead to a file-descriptor leak in libmagickcore (thus, a DoS).

Patch available
Fix from $1,600 2017-03-06
Imagemagick MEDIUM 5.5
CVE-2016-10070

Heap-based buffer overflow in the CalcMinMax function in coders/mat.c in ImageMagick before 6.9.4-0 allows remote attackers to cause a denial of serv…

Fix: after 6.9.3-10
Fix from $1,600 2017-03-03
Imagemagick HIGH 7.8
CVE-2016-10065

The ReadVIFFImage function in coders/viff.c in ImageMagick before 7.0.1-0 allows remote attackers to cause a denial of service (application crash) or…

Fix: after 6.9.7-10
Fix from $1,950 2017-03-03
Imagemagick MEDIUM 6.5
CVE-2016-10061

The ReadGROUP4Image function in coders/tiff.c in ImageMagick before 7.0.1-10 does not check the return value of the fputc function, which allows remo…

Fix: 6.9.4-8 / 7.0.1-10+
Fix from $1,600 2017-03-03
Imagemagick MEDIUM 5.5
CVE-2016-10066

Buffer overflow in the ReadVIFFImage function in coders/viff.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (ap…

Fix: after 6.9.4-4
Fix from $1,600 2017-03-03
Imagemagick HIGH 7.8
CVE-2016-10063

Buffer overflow in coders/tiff.c in ImageMagick before 6.9.5-1 allows remote attackers to cause a denial of service (application crash) or have other…

Fix: after 6.9.5-0
Fix from $1,950 2017-03-02
Imagemagick HIGH 7.8
CVE-2016-10064

Buffer overflow in coders/tiff.c in ImageMagick before 6.9.5-1 allows remote attackers to cause a denial of service (application crash) or have other…

Fix: after 6.9.5-0
Fix from $1,950 2017-03-02
Imagemagick HIGH 7.5
CVE-2016-10067

magick/memory.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (application crash) via vectors involving "too man…

Fix: after 6.9.4-4
Fix from $1,950 2017-03-02