CVE-2013-4589
|
The ExportAlphaQuantumType function in export.c in GraphicsMagick before 1.3.18 might allow remote attackers to cause a denial of service (crash) via vectors related to exporting the alpha of an 8-bit RGBA image.
Published:
November 23, 2013; 06:55:04 AM -05:00
|
V2: 4.3 MEDIUM
|
CVE-2008-6621
|
Unspecified vulnerability in GraphicsMagick before 1.2.3 allows remote attackers to cause a denial of service (crash) via unspecified vectors in DPX images. NOTE: some of these details are obtained from third party information.
Published:
April 06, 2009; 05:30:00 PM -04:00
|
V2: 7.8 HIGH
|
CVE-2008-6072
|
Multiple unspecified vulnerabilities in GraphicsMagick before 1.1.14, and 1.2.x before 1.2.3, allow remote attackers to cause a denial of service (crash) via unspecified vectors in (1) XCF and (2) CINEON images.
Published:
February 10, 2009; 01:59:34 AM -05:00
|
V2: 5.0 MEDIUM
|
CVE-2008-6071
|
Heap-based buffer overflow in the DecodeImage function in coders/pict.c in GraphicsMagick before 1.1.14, and 1.2.x before 1.2.3, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted PICT image. NOTE: some of these details are obtained from third party information.
Published:
February 10, 2009; 01:59:34 AM -05:00
|
V2: 10.0 HIGH
|
CVE-2008-6070
|
Multiple heap-based buffer underflows in the ReadPALMImage function in coders/palm.c in GraphicsMagick before 1.2.3 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted PALM image, a different vulnerability than CVE-2007-0770. NOTE: some of these details are obtained from third party information.
Published:
February 10, 2009; 01:59:34 AM -05:00
|
V2: 9.3 HIGH
|
CVE-2008-3134
|
Multiple unspecified vulnerabilities in GraphicsMagick before 1.2.4 allow remote attackers to cause a denial of service (crash, infinite loop, or memory consumption) via (a) unspecified vectors in the (1) AVI, (2) AVS, (3) DCM, (4) EPT, (5) FITS, (6) MTV, (7) PALM, (8) RLA, and (9) TGA decoder readers; and (b) the GetImageCharacteristics function in magick/image.c, as reachable from a crafted (10) PNG, (11) JPEG, (12) BMP, or (13) TIFF file.
Published:
July 10, 2008; 07:41:00 PM -04:00
|
V2: 5.0 MEDIUM
|
CVE-2007-0770
|
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
Published:
February 12, 2007; 03:28:00 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2006-5456
|
Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 allow user-assisted attackers to cause a denial of service and possibly execute arbitrary code via (1) a DCM image that is not properly handled by the ReadDCMImage function in coders/dcm.c, or (2) a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c.
Published:
October 23, 2006; 01:07:00 PM -04:00
|
V2: 5.1 MEDIUM
|
CVE-2005-1739
|
The XWD Decoder in ImageMagick before 6.2.2.3, and GraphicsMagick before 1.1.6-r1, allows remote attackers to cause a denial of service (infinite loop) via an image with a zero color mask.
Published:
May 24, 2005; 12:00:00 AM -04:00
|
V2: 5.0 MEDIUM
|
CVE-2005-0005
|
Heap-based buffer overflow in psd.c for ImageMagick 6.1.0, 6.1.7, and possibly earlier versions allows remote attackers to execute arbitrary code via a .PSD image file with a large number of layers.
Published:
May 02, 2005; 12:00:00 AM -04:00
|
V2: 7.5 HIGH
|
CVE-2005-1275
|
Heap-based buffer overflow in the ReadPNMImage function in pnm.c for ImageMagick 6.2.1 and earlier allows remote attackers to cause a denial of service (application crash) via a PNM file with a small colors value.
Published:
April 25, 2005; 12:00:00 AM -04:00
|
V2: 5.0 MEDIUM
|