Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-7449

Опубликовано: 06 фев. 2017
Источник: debian

Описание

The TIFFGetField function in coders/tiff.c in GraphicsMagick 1.3.24 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a file containing an "unterminated" string.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
graphicsmagickfixed1.3.25-1package

Примечания

  • The scope of the CVE is for all of these reported TIFF problems.

  • The ultimate vulnerability was use of:

  • strlcpy(attribute,text,Min(sizeof(attribute),(count+1)));

  • three times in coders/tiff.c, where strlcpy is not an appropriate

  • function choice for this type of scenario of untrusted-data copying.

  • http://hg.code.sf.net/p/graphicsmagick/code/rev/eb58028dacf5

  • https://blogs.gentoo.org/ago/2016/08/23/graphicsmagick-two-heap-based-buffer-overflow-in-readtiffimage-tiff-c/

  • https://blogs.gentoo.org/ago/2016/09/07/graphicsmagick-null-pointer-dereference-in-magickstrlcpy-utility-c/

  • Fixed by http://hg.graphicsmagick.org/hg/GraphicsMagick/rev/eb58028dacf5

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 9 лет назад

The TIFFGetField function in coders/tiff.c in GraphicsMagick 1.3.24 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a file containing an "unterminated" string.

CVSS3: 7.5
nvd
около 9 лет назад

The TIFFGetField function in coders/tiff.c in GraphicsMagick 1.3.24 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a file containing an "unterminated" string.

CVSS3: 7.5
github
больше 3 лет назад

The TIFFGetField function in coders/tiff.c in GraphicsMagick 1.3.24 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a file containing an "unterminated" string.

suse-cvrf
больше 9 лет назад

Security update for GraphicsMagick

suse-cvrf
больше 9 лет назад

Security update for GraphicsMagick