Vulnerability index

Browse CVEs

492 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2018-6876 The OLEProperty class in ole/oleprop.cpp in libfpx 1.3.1-10, as used in ImageMagick 7.0.7-22 Q16 and other products, allows remote attackers to cause… Imagemagick No fix yet Fix from $1,6002018-02-09 HIGH 8.8 CVE-2017-17880 In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-21, there is a stack-based buffer over-read in WriteWEBPImage in coders/webp.c, related to a WEBP_DECODER_… Imagemagick Mitigation only Fix from $1,9502017-12-27 MEDIUM 6.5 CVE-2017-17883 In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in the function ReadPGXImage in coders/pgx.c, which allows attackers to cause a de… Imagemagick Mitigation only Fix from $1,6002017-12-27 MEDIUM 6.5 CVE-2017-14989 A use-after-free in RenderFreetype in MagickCore/annotate.c in ImageMagick 7.0.7-4 Q16 allows attackers to crash the application via a crafted font f… Imagemagick Patch available Fix from $1,6002017-10-03 HIGH 7.5 CVE-2017-14739 The AcquireResampleFilterThreadSet function in magick/resample-private.h in ImageMagick 7.0.7-4 mishandles failed memory allocation, which allows rem… Imagemagick Patch available Fix from $1,9502017-09-26 MEDIUM 6.5 CVE-2017-14741 The ReadCAPTIONImage function in coders/caption.c in ImageMagick 7.0.7-3 allows remote attackers to cause a denial of service (infinite loop) via a c… Imagemagick Patch available Fix from $1,6002017-09-26 MEDIUM 6.5 CVE-2017-14684 In ImageMagick 7.0.7-4 Q16, a memory leak vulnerability was found in the function ReadVIPSImage in coders/vips.c, which allows attackers to cause a d… Imagemagick Patch available Fix from $1,6002017-09-22 HIGH 8.8 CVE-2017-14682 GetNextToken in MagickCore/token.c in ImageMagick 7.0.6 allows remote attackers to cause a denial of service (heap-based buffer overflow and applicat… Imagemagick Patch available Fix from $1,9502017-09-21 MEDIUM 6.5 CVE-2017-14505 DrawGetStrokeDashArray in wand/drawing-wand.c in ImageMagick 7.0.7-1 mishandles certain NULL arrays, which allows attackers to perform Denial of Serv… Imagemagick Patch available Fix from $1,6002017-09-17 MEDIUM 6.5 CVE-2017-14400 In ImageMagick 7.0.7-1 Q16, the PersistPixelCache function in magick/cache.c mishandles the pixel cache nexus, which allows remote attackers to cause… Imagemagick No fix yet Fix from $1,6002017-09-12 MEDIUM 6.5 CVE-2017-14324 In ImageMagick 7.0.7-1 Q16, a memory leak vulnerability was found in the function ReadMPCImage in coders/mpc.c, which allows attackers to cause a den… Imagemagick Patch available Fix from $1,6002017-09-12 MEDIUM 6.5 CVE-2017-14248 A heap-based buffer over-read in SampleImage() in MagickCore/resize.c in ImageMagick 7.0.6-8 Q16 allows remote attackers to cause a denial of service… Imagemagick Patch available Fix from $1,6002017-09-11 MEDIUM 6.5 CVE-2017-14249 ImageMagick 7.0.6-8 Q16 mishandles EOF checks in ReadMPCImage in coders/mpc.c, leading to division by zero in GetPixelCacheTileSize in MagickCore/cac… Imagemagick Patch available Fix from $1,6002017-09-11 HIGH 8.8 CVE-2017-14224 A heap-based buffer overflow in WritePCXImage in coders/pcx.c in ImageMagick 7.0.6-8 Q16 allows remote attackers to cause a denial of service or code… Imagemagick Patch available Fix from $1,9502017-09-09 CRITICAL 9.8 CVE-2017-14138 ImageMagick 7.0.6-5 has a memory leak vulnerability in ReadWEBPImage in coders/webp.c because memory is not freed in certain error cases, as demonstr… Imagemagick Patch available Fix from $2,3002017-09-04 HIGH 7.5 CVE-2017-14137 ReadWEBPImage in coders/webp.c in ImageMagick 7.0.6-5 has an issue where memory allocation is excessive because it depends only on a length field in … Imagemagick Patch available Fix from $1,9502017-09-04 MEDIUM 6.5 CVE-2017-14139 ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteMSLImage in coders/msl.c. Imagemagick Patch available Fix from $1,6002017-09-04 MEDIUM 6.5 CVE-2017-13758 In ImageMagick 7.0.6-10, there is a heap-based buffer overflow in the TracePoint() function in MagickCore/draw.c. Imagemagick Patch available Fix from $1,6002017-08-29 MEDIUM 6.5 CVE-2017-12875 The WritePixelCachePixels function in ImageMagick 7.0.6-6 allows remote attackers to cause a denial of service (CPU consumption) via a crafted file. Imagemagick Patch available Fix from $1,6002017-08-29 MEDIUM 6.5 CVE-2017-12876 Heap-based buffer overflow in enhance.c in ImageMagick before 7.0.6-6 allows remote attackers to cause a denial of service via a crafted file. Imagemagick 7.0.6-6+ Fix from $1,6002017-08-28 MEDIUM 6.5 CVE-2017-13658 In ImageMagick before 6.9.9-3 and 7.x before 7.0.6-3, there is a missing NULL check in the ReadMATImage function in coders/mat.c, leading to a denial… Imagemagick after 6.9.9-2 Fix from $1,6002017-08-24 HIGH 8.8 CVE-2017-13146 In ImageMagick before 6.9.8-5 and 7.x before 7.0.5-6, there is a memory leak in the ReadMATImage function in coders/mat.c. Imagemagick after 6.9.8-4 Fix from $1,9502017-08-23 HIGH 7.5 CVE-2017-13143 In ImageMagick before 6.9.7-6 and 7.x before 7.0.4-6, the ReadMATImage function in coders/mat.c uses uninitialized data, which might allow remote att… Imagemagick after 6.9.7-5 Fix from $1,9502017-08-23 MEDIUM 6.5 CVE-2017-13140 In ImageMagick before 6.9.9-1 and 7.x before 7.0.6-2, the ReadOnePNGImage function in coders/png.c allows remote attackers to cause a denial of servi… Imagemagick after 6.9.9-0 Fix from $1,6002017-08-23 MEDIUM 6.5 CVE-2017-13141 In ImageMagick before 6.9.9-4 and 7.x before 7.0.6-4, a crafted file could trigger a memory leak in ReadOnePNGImage in coders/png.c. Imagemagick after 6.9.9-3 Fix from $1,6002017-08-23 MEDIUM 6.5 CVE-2017-13142 In ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1, a crafted PNG file could trigger a crash because there was an insufficient check for short file… Imagemagick after 6.9.9-0 Fix from $1,6002017-08-23 MEDIUM 6.5 CVE-2017-13144 In ImageMagick before 6.9.7-10, there is a crash (rather than a "width or height exceeds limit" error report) if the image dimensions are too large, … Imagemagick after 6.9.7-9 Fix from $1,6002017-08-23 MEDIUM 6.5 CVE-2017-13131 In ImageMagick 7.0.6-8, a memory leak vulnerability was found in the function ReadMIFFImage in coders/miff.c, which allows attackers to cause a denia… Imagemagick Patch available Fix from $1,6002017-08-23 MEDIUM 6.5 CVE-2017-13132 In ImageMagick 7.0.6-8, the WritePDFImage function in coders/pdf.c operates on an incorrect data structure in the "dump uncompressed PseudoColor pack… Imagemagick Patch available Fix from $1,6002017-08-23 MEDIUM 6.5 CVE-2017-13133 In ImageMagick 7.0.6-8, the load_level function in coders/xcf.c lacks offset validation, which allows attackers to cause a denial of service (load_ti… Imagemagick Patch available Fix from $1,6002017-08-23