Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-10131

Опубликовано: 30 апр. 2019
Источник: debian
EPSS Низкий

Описание

An off-by-one read vulnerability was discovered in ImageMagick before version 7.0.7-28 in the formatIPTCfromBuffer function in coders/meta.c. A local attacker may use this flaw to read beyond the end of the buffer or to crash the program.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
imagemagickfixed8:6.9.10.2+dfsg-1experimentalpackage
imagemagickfixed8:6.9.10.2+dfsg-2package
imagemagickno-dsajessiepackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=1704762

  • https://github.com/ImageMagick/ImageMagick/commit/cb1214c124e1bd61f7dd551b94a794864861592e

  • https://github.com/ImageMagick/ImageMagick6/commit/7ccc28ee4c777d915f95919ac3bcf8adf93037a7

EPSS

Процентиль: 23%
0.00074
Низкий

Связанные уязвимости

CVSS3: 7.1
ubuntu
около 6 лет назад

An off-by-one read vulnerability was discovered in ImageMagick before version 7.0.7-28 in the formatIPTCfromBuffer function in coders/meta.c. A local attacker may use this flaw to read beyond the end of the buffer or to crash the program.

CVSS3: 6.5
redhat
около 6 лет назад

An off-by-one read vulnerability was discovered in ImageMagick before version 7.0.7-28 in the formatIPTCfromBuffer function in coders/meta.c. A local attacker may use this flaw to read beyond the end of the buffer or to crash the program.

CVSS3: 7.1
nvd
около 6 лет назад

An off-by-one read vulnerability was discovered in ImageMagick before version 7.0.7-28 in the formatIPTCfromBuffer function in coders/meta.c. A local attacker may use this flaw to read beyond the end of the buffer or to crash the program.

suse-cvrf
около 6 лет назад

Security update for GraphicsMagick

github
около 3 лет назад

An off-by-one read vulnerability was discovered in ImageMagick before version 7.0.7-28 in the formatIPTCfromBuffer function in coders/meta.c. A local attacker may use this flaw to read beyond the end of the buffer or to crash the program.

EPSS

Процентиль: 23%
0.00074
Низкий