Vulnerability index

Browse CVEs

492 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Imagemagick MEDIUM 6.5
CVE-2016-10060

The ConcatenateImages function in MagickWand/magick-cli.c in ImageMagick before 7.0.1-10 does not check the return value of the fputc function, which…

Fix: 6.9.4-1 / 7.0.1-10+
Fix from $1,600 2017-03-02
Imagemagick MEDIUM 5.5
CVE-2016-10062

The ReadGROUP4Image function in coders/tiff.c in ImageMagick does not check the return value of the fwrite function, which allows remote attackers to…

Fix: 7.0.1-10+
Fix from $1,600 2017-03-02
Imagemagick MEDIUM 5.5
CVE-2016-10068

The MSL interpreter in ImageMagick before 6.9.6-4 allows remote attackers to cause a denial of service (segmentation fault and application crash) via…

Fix: after 6.9.6-3
Fix from $1,600 2017-03-02
Imagemagick MEDIUM 5.5
CVE-2016-10069

coders/mat.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (application crash) via a mat file with an invalid nu…

Fix: after 6.9.4-4
Fix from $1,600 2017-03-02
Imagemagick MEDIUM 5.5
CVE-2016-10071

coders/mat.c in ImageMagick before 6.9.4-0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a craf…

Fix: after 6.9.3-10
Fix from $1,600 2017-03-02
Imagemagick MEDIUM 6.5
CVE-2015-8901

ImageMagick 6.x before 6.9.0-5 Beta allows remote attackers to cause a denial of service (infinite loop) via a crafted MIFF file.

Fix: 6.9.0-5+
Fix from $1,600 2017-02-27
Imagemagick MEDIUM 6.5
CVE-2015-8902

The ReadBlobByte function in coders/pdb.c in ImageMagick 6.x before 6.9.0-5 Beta allows remote attackers to cause a denial of service (infinite loop)…

Fix: 6.9.0-5+
Fix from $1,600 2017-02-27
Imagemagick MEDIUM 6.5
CVE-2015-8903

The ReadVICARImage function in coders/vicar.c in ImageMagick 6.x before 6.9.0-5 Beta allows remote attackers to cause a denial of service (infinite l…

Fix: 6.9.0-5+
Fix from $1,600 2017-02-27
Imagemagick MEDIUM 5.5
CVE-2015-8900

The ReadHDRImage function in coders/hdr.c in ImageMagick 6.x and 7.x allows remote attackers to cause a denial of service (infinite loop) via a craft…

Fix: after 7.0.5-0
Fix from $1,600 2017-02-27
Imagemagick MEDIUM 5.5
CVE-2016-9773

Heap-based buffer overflow in the IsPixelGray function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3.8 allows remote attackers to cause a denia…

Patch available
Fix from $1,600 2017-02-17
Imagemagick MEDIUM 5.5
CVE-2016-8678

The IsPixelMonochrome function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3.0 allows remote attackers to cause a denial of service (out-of-bou…

Patch available
Fix from $1,600 2017-02-15
Imagemagick HIGH 8.8
CVE-2016-8866

The AcquireMagickMemory function in MagickCore/memory.c in ImageMagick 7.0.3.3 before 7.0.3.8 allows remote attackers to have unspecified impact via …

Fix: 6.9.6-6+
Fix from $1,950 2017-02-15
Imagemagick MEDIUM 5.5
CVE-2016-9298

Heap overflow in the WaveletDenoiseImage function in MagickCore/fx.c in ImageMagick before 6.9.6-4 and 7.x before 7.0.3-6 allows remote attackers to …

Fix: after 6.9.6-3
Fix from $1,600 2017-01-27
Imagemagick HIGH 7.5
CVE-2016-6823

Integer overflow in the BMP coder in ImageMagick before 7.0.2-10 allows remote attackers to cause a denial of service (crash) via crafted height and …

Fix: 6.9.10-50 / 7.0.2-10+
Fix from $1,950 2017-01-18
Imagemagick MEDIUM 6.5
CVE-2016-7101

The SGI coder in ImageMagick before 7.0.2-10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large row value in an sg…

Fix: 6.9.5-8 / 7.0.2-10+
Fix from $1,600 2017-01-18
Imagemagick CRITICAL 9.1
CVE-2016-6520

Buffer overflow in MagickCore/enhance.c in ImageMagick before 7.0.2-7 allows remote attackers to have unspecified impact via vectors related to pixel…

Fix: 7.0.2-7+
Fix from $2,300 2016-12-13
Imagemagick HIGH 8.8
CVE-2016-6491EPSS 5%

Buffer overflow in the Get8BIMProperty function in MagickCore/property.c in ImageMagick before 6.9.5-4 and 7.x before 7.0.2-6 allows remote attackers…

Fix: after 6.9.5-3
Fix from $1,950 2016-12-13
Imagemagick HIGH 7.5
CVE-2016-5842EPSS 6%

MagickCore/property.c in ImageMagick before 7.0.2-1 allows remote attackers to obtain sensitive memory information via vectors involving the q variab…

Fix: 6.9.4-10 / 7.0.2-1+
Fix from $1,950 2016-12-13
Imagemagick CRITICAL 9.8
CVE-2016-5841EPSS 13%

Integer overflow in MagickCore/profile.c in ImageMagick before 7.0.2-1 allows remote attackers to cause a denial of service (segmentation fault) or p…

Fix: after 7.0.2-0
Fix from $2,300 2016-12-13
Imagemagick CRITICAL 9.8
CVE-2016-5687

The VerticalFilter function in the DDS coder in ImageMagick before 6.9.4-3 and 7.x before 7.0.1-4 allows remote attackers to have unspecified impact …

Fix: after 6.9.4-2
Fix from $2,300 2016-12-13
Imagemagick CRITICAL 9.8
CVE-2016-4564

The DrawImage function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 makes an incorrect function call in attempting to lo…

Fix: after 6.9.3-0
Fix from $2,300 2016-06-04
Imagemagick HIGH 8.8
CVE-2016-4563

The TraceStrokePolygon function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 mishandles the relationship between the Bez…

Fix: after 6.9.3-0
Fix from $1,950 2016-06-04
Imagemagick HIGH 8.8
CVE-2016-4562

The DrawDashPolygon function in MagickCore/draw.c in ImageMagick before 6.9.4-0 and 7.x before 7.0.1-2 mishandles calculations of certain vertices in…

Fix: after 6.9.3-0
Fix from $1,950 2016-06-04
Imagemagick MEDIUM 6.9
CVE-2010-4167

Untrusted search path vulnerability in configure.c in ImageMagick before 6.6.5-5, when MAGICKCORE_INSTALLED_SUPPORT is defined, allows local users to…

Fix: after 6.6.5-4
Fix from $1,600 2010-11-22
Imagemagick HIGH 9.3
CVE-2009-1882EPSS 7%

Integer overflow in the XMakeImage function in magick/xwindow.c in ImageMagick 6.5.2-8, and GraphicsMagick, allows remote attackers to cause a denial…

Mitigation only
Fix from $1,950 2009-06-02
Graphicsmagick MEDIUM 6.8
CVE-2008-1096

The load_tile function in the XCF coder in coders/xcf.c in (1) ImageMagick 6.2.8-0 and (2) GraphicsMagick (aka gm) 1.1.7 allows user-assisted remote …

No fix yet
Fix from $1,600 2008-03-05
Graphicsmagick MEDIUM 6.8
CVE-2008-1097

Heap-based buffer overflow in the ReadPCXImage function in the PCX coder in coders/pcx.c in (1) ImageMagick 6.2.4-5 and 6.2.8-0 and (2) GraphicsMagic…

No fix yet
Fix from $1,600 2008-03-05
Imagemagick HIGH 9.3
CVE-2007-4987

Off-by-one error in the ReadBlobString function in blob.c in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code …

Patch available
Fix from $1,950 2007-09-24
Imagemagick MEDIUM 6.8
CVE-2007-4986

Multiple integer overflows in ImageMagick before 6.3.5-9 allow context-dependent attackers to execute arbitrary code via a crafted (1) .dcm, (2) .dib…

Patch available
Fix from $1,600 2007-09-24
Imagemagick MEDIUM 6.8
CVE-2007-1797

Multiple integer overflows in ImageMagick before 6.3.3-5 allow remote attackers to execute arbitrary code via (1) a crafted DCM image, which results …

Patch available
Fix from $1,600 2007-04-02