Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-1947

Опубликовано: 17 фев. 2020
Источник: debian
EPSS Низкий

Описание

Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick 6.5.4 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number of layers in a PSD image, involving the L%02ld string, a different vulnerability than CVE-2014-2030.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
imagemagickfixed8:6.7.7.10+dfsg-1package
graphicsmagickfixed1.3.20-1package

Примечания

  • http://web.archive.org/web/20090120112751/http://trac.imagemagick.org:80/changeset/13736

  • for graphicsmagick: https://bugzilla.redhat.com/show_bug.cgi?id=1064098#c13

  • Rendered non-exploitable by fortified source for graphicsmagick

EPSS

Процентиль: 91%
0.06954
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 6 лет назад

Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick 6.5.4 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number of layers in a PSD image, involving the L%02ld string, a different vulnerability than CVE-2014-2030.

redhat
около 12 лет назад

Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick 6.5.4 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number of layers in a PSD image, involving the L%02ld string, a different vulnerability than CVE-2014-2030.

CVSS3: 7.8
nvd
почти 6 лет назад

Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick 6.5.4 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number of layers in a PSD image, involving the L%02ld string, a different vulnerability than CVE-2014-2030.

github
больше 3 лет назад

Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick 6.5.4 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number of layers in a PSD image, involving the L%02ld string, a different vulnerability than CVE-2014-2030.

EPSS

Процентиль: 91%
0.06954
Низкий