Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-1958

Опубликовано: 06 фев. 2020
Источник: debian

Описание

Buffer overflow in the DecodePSDPixels function in coders/psd.c in ImageMagick before 6.8.8-5 might allow remote attackers to execute arbitrary code via a crafted PSD image, involving the L%06ld string, a different vulnerability than CVE-2014-2030.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
imagemagickfixed8:6.7.7.10+dfsg-1package
imagemagicknot-affectedsqueezepackage

Примечания

  • squeeze: DecodePSDPixels not present but there was a rewrite from DecodeImage?

  • http://secunia.com/advisories/56844/

Связанные уязвимости

CVSS3: 8.8
ubuntu
около 6 лет назад

Buffer overflow in the DecodePSDPixels function in coders/psd.c in ImageMagick before 6.8.8-5 might allow remote attackers to execute arbitrary code via a crafted PSD image, involving the L%06ld string, a different vulnerability than CVE-2014-2030.

redhat
около 12 лет назад

Buffer overflow in the DecodePSDPixels function in coders/psd.c in ImageMagick before 6.8.8-5 might allow remote attackers to execute arbitrary code via a crafted PSD image, involving the L%06ld string, a different vulnerability than CVE-2014-2030.

CVSS3: 8.8
nvd
около 6 лет назад

Buffer overflow in the DecodePSDPixels function in coders/psd.c in ImageMagick before 6.8.8-5 might allow remote attackers to execute arbitrary code via a crafted PSD image, involving the L%06ld string, a different vulnerability than CVE-2014-2030.

github
больше 3 лет назад

Buffer overflow in the DecodePSDPixels function in coders/psd.c in ImageMagick before 6.8.8-5 might allow remote attackers to execute arbitrary code via a crafted PSD image, involving the L%06ld string, a different vulnerability than CVE-2014-2030.