Vulnerability index

Browse CVEs

492 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Imagemagick MEDIUM 6.5
CVE-2018-6876

The OLEProperty class in ole/oleprop.cpp in libfpx 1.3.1-10, as used in ImageMagick 7.0.7-22 Q16 and other products, allows remote attackers to cause…

No fix yet
Fix from $1,600 2018-02-09
Imagemagick HIGH 8.8
CVE-2017-17880

In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-21, there is a stack-based buffer over-read in WriteWEBPImage in coders/webp.c, related to a WEBP_DECODER_…

Mitigation only
Fix from $1,950 2017-12-27
Imagemagick MEDIUM 6.5
CVE-2017-17883

In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in the function ReadPGXImage in coders/pgx.c, which allows attackers to cause a de…

Mitigation only
Fix from $1,600 2017-12-27
Imagemagick MEDIUM 6.5
CVE-2017-14989

A use-after-free in RenderFreetype in MagickCore/annotate.c in ImageMagick 7.0.7-4 Q16 allows attackers to crash the application via a crafted font f…

Patch available
Fix from $1,600 2017-10-03
Imagemagick HIGH 7.5
CVE-2017-14739

The AcquireResampleFilterThreadSet function in magick/resample-private.h in ImageMagick 7.0.7-4 mishandles failed memory allocation, which allows rem…

Patch available
Fix from $1,950 2017-09-26
Imagemagick MEDIUM 6.5
CVE-2017-14741

The ReadCAPTIONImage function in coders/caption.c in ImageMagick 7.0.7-3 allows remote attackers to cause a denial of service (infinite loop) via a c…

Patch available
Fix from $1,600 2017-09-26
Imagemagick MEDIUM 6.5
CVE-2017-14684

In ImageMagick 7.0.7-4 Q16, a memory leak vulnerability was found in the function ReadVIPSImage in coders/vips.c, which allows attackers to cause a d…

Patch available
Fix from $1,600 2017-09-22
Imagemagick HIGH 8.8
CVE-2017-14682

GetNextToken in MagickCore/token.c in ImageMagick 7.0.6 allows remote attackers to cause a denial of service (heap-based buffer overflow and applicat…

Patch available
Fix from $1,950 2017-09-21
Imagemagick MEDIUM 6.5
CVE-2017-14505

DrawGetStrokeDashArray in wand/drawing-wand.c in ImageMagick 7.0.7-1 mishandles certain NULL arrays, which allows attackers to perform Denial of Serv…

Patch available
Fix from $1,600 2017-09-17
Imagemagick MEDIUM 6.5
CVE-2017-14400

In ImageMagick 7.0.7-1 Q16, the PersistPixelCache function in magick/cache.c mishandles the pixel cache nexus, which allows remote attackers to cause…

No fix yet
Fix from $1,600 2017-09-12
Imagemagick MEDIUM 6.5
CVE-2017-14324

In ImageMagick 7.0.7-1 Q16, a memory leak vulnerability was found in the function ReadMPCImage in coders/mpc.c, which allows attackers to cause a den…

Patch available
Fix from $1,600 2017-09-12
Imagemagick MEDIUM 6.5
CVE-2017-14248

A heap-based buffer over-read in SampleImage() in MagickCore/resize.c in ImageMagick 7.0.6-8 Q16 allows remote attackers to cause a denial of service…

Patch available
Fix from $1,600 2017-09-11
Imagemagick MEDIUM 6.5
CVE-2017-14249

ImageMagick 7.0.6-8 Q16 mishandles EOF checks in ReadMPCImage in coders/mpc.c, leading to division by zero in GetPixelCacheTileSize in MagickCore/cac…

Patch available
Fix from $1,600 2017-09-11
Imagemagick HIGH 8.8
CVE-2017-14224

A heap-based buffer overflow in WritePCXImage in coders/pcx.c in ImageMagick 7.0.6-8 Q16 allows remote attackers to cause a denial of service or code…

Patch available
Fix from $1,950 2017-09-09
Imagemagick CRITICAL 9.8
CVE-2017-14138

ImageMagick 7.0.6-5 has a memory leak vulnerability in ReadWEBPImage in coders/webp.c because memory is not freed in certain error cases, as demonstr…

Patch available
Fix from $2,300 2017-09-04
Imagemagick HIGH 7.5
CVE-2017-14137

ReadWEBPImage in coders/webp.c in ImageMagick 7.0.6-5 has an issue where memory allocation is excessive because it depends only on a length field in …

Patch available
Fix from $1,950 2017-09-04
Imagemagick MEDIUM 6.5
CVE-2017-14139

ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteMSLImage in coders/msl.c.

Patch available
Fix from $1,600 2017-09-04
Imagemagick MEDIUM 6.5
CVE-2017-13758

In ImageMagick 7.0.6-10, there is a heap-based buffer overflow in the TracePoint() function in MagickCore/draw.c.

Patch available
Fix from $1,600 2017-08-29
Imagemagick MEDIUM 6.5
CVE-2017-12875

The WritePixelCachePixels function in ImageMagick 7.0.6-6 allows remote attackers to cause a denial of service (CPU consumption) via a crafted file.

Patch available
Fix from $1,600 2017-08-29
Imagemagick MEDIUM 6.5
CVE-2017-12876

Heap-based buffer overflow in enhance.c in ImageMagick before 7.0.6-6 allows remote attackers to cause a denial of service via a crafted file.

Fix: 7.0.6-6+
Fix from $1,600 2017-08-28
Imagemagick MEDIUM 6.5
CVE-2017-13658

In ImageMagick before 6.9.9-3 and 7.x before 7.0.6-3, there is a missing NULL check in the ReadMATImage function in coders/mat.c, leading to a denial…

Fix: after 6.9.9-2
Fix from $1,600 2017-08-24
Imagemagick HIGH 8.8
CVE-2017-13146

In ImageMagick before 6.9.8-5 and 7.x before 7.0.5-6, there is a memory leak in the ReadMATImage function in coders/mat.c.

Fix: after 6.9.8-4
Fix from $1,950 2017-08-23
Imagemagick HIGH 7.5
CVE-2017-13143

In ImageMagick before 6.9.7-6 and 7.x before 7.0.4-6, the ReadMATImage function in coders/mat.c uses uninitialized data, which might allow remote att…

Fix: after 6.9.7-5
Fix from $1,950 2017-08-23
Imagemagick MEDIUM 6.5
CVE-2017-13140

In ImageMagick before 6.9.9-1 and 7.x before 7.0.6-2, the ReadOnePNGImage function in coders/png.c allows remote attackers to cause a denial of servi…

Fix: after 6.9.9-0
Fix from $1,600 2017-08-23
Imagemagick MEDIUM 6.5
CVE-2017-13141

In ImageMagick before 6.9.9-4 and 7.x before 7.0.6-4, a crafted file could trigger a memory leak in ReadOnePNGImage in coders/png.c.

Fix: after 6.9.9-3
Fix from $1,600 2017-08-23
Imagemagick MEDIUM 6.5
CVE-2017-13142

In ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1, a crafted PNG file could trigger a crash because there was an insufficient check for short file…

Fix: after 6.9.9-0
Fix from $1,600 2017-08-23
Imagemagick MEDIUM 6.5
CVE-2017-13144

In ImageMagick before 6.9.7-10, there is a crash (rather than a "width or height exceeds limit" error report) if the image dimensions are too large, …

Fix: after 6.9.7-9
Fix from $1,600 2017-08-23
Imagemagick MEDIUM 6.5
CVE-2017-13131

In ImageMagick 7.0.6-8, a memory leak vulnerability was found in the function ReadMIFFImage in coders/miff.c, which allows attackers to cause a denia…

Patch available
Fix from $1,600 2017-08-23
Imagemagick MEDIUM 6.5
CVE-2017-13132

In ImageMagick 7.0.6-8, the WritePDFImage function in coders/pdf.c operates on an incorrect data structure in the "dump uncompressed PseudoColor pack…

Patch available
Fix from $1,600 2017-08-23
Imagemagick MEDIUM 6.5
CVE-2017-13133

In ImageMagick 7.0.6-8, the load_level function in coders/xcf.c lacks offset validation, which allows attackers to cause a denial of service (load_ti…

Patch available
Fix from $1,600 2017-08-23