Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-12429

Опубликовано: 04 авг. 2017
Источник: debian
EPSS Низкий

Описание

In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadMIFFImage in coders/miff.c, which allows attackers to cause a denial of service.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
imagemagickfixed8:6.9.7.4+dfsg-13package
imagemagickignoredjessiepackage

Примечания

  • https://github.com/ImageMagick/ImageMagick/issues/545

  • https://github.com/ImageMagick/ImageMagick/commit/30a74ed25a4890acfa94f452d653d54c9628c87e

  • ImageMagick-6: https://github.com/ImageMagick/ImageMagick/commit/3ac6c73d39d59a7b0285b3756810272121759a31

  • The fix applied for #869727 included the change for upstream issue 545, cf.

  • https://github.com/ImageMagick/ImageMagick/issues/546#issuecomment-313968413

EPSS

Процентиль: 71%
0.00661
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 8 лет назад

In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadMIFFImage in coders/miff.c, which allows attackers to cause a denial of service.

CVSS3: 3.3
redhat
больше 8 лет назад

In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadMIFFImage in coders/miff.c, which allows attackers to cause a denial of service.

CVSS3: 7.5
nvd
больше 8 лет назад

In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadMIFFImage in coders/miff.c, which allows attackers to cause a denial of service.

CVSS3: 7.5
github
больше 3 лет назад

In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadMIFFImage in coders/miff.c, which allows attackers to cause a denial of service.

CVSS3: 7.5
fstec
больше 8 лет назад

Уязвимость функции ReadMIFFImage консольного графического редактора ImageMagick, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 71%
0.00661
Низкий