Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2fx4-8cc3-3383

Опубликовано: 11 авг. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

In ImageMagick, a crafted file could trigger an assertion failure when a call to WriteImages was made in MagickWand/operation.c, due to a NULL image list. This could potentially cause a denial of service. This was fixed in upstream ImageMagick version 7.1.0-30.

In ImageMagick, a crafted file could trigger an assertion failure when a call to WriteImages was made in MagickWand/operation.c, due to a NULL image list. This could potentially cause a denial of service. This was fixed in upstream ImageMagick version 7.1.0-30.

EPSS

Процентиль: 4%
0.00023
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-617

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 3 лет назад

In ImageMagick, a crafted file could trigger an assertion failure when a call to WriteImages was made in MagickWand/operation.c, due to a NULL image list. This could potentially cause a denial of service. This was fixed in upstream ImageMagick version 7.1.0-30.

CVSS3: 5.5
redhat
больше 3 лет назад

In ImageMagick, a crafted file could trigger an assertion failure when a call to WriteImages was made in MagickWand/operation.c, due to a NULL image list. This could potentially cause a denial of service. This was fixed in upstream ImageMagick version 7.1.0-30.

CVSS3: 5.5
nvd
около 3 лет назад

In ImageMagick, a crafted file could trigger an assertion failure when a call to WriteImages was made in MagickWand/operation.c, due to a NULL image list. This could potentially cause a denial of service. This was fixed in upstream ImageMagick version 7.1.0-30.

CVSS3: 5.5
debian
около 3 лет назад

In ImageMagick, a crafted file could trigger an assertion failure when ...

suse-cvrf
почти 3 года назад

Security update for ImageMagick

EPSS

Процентиль: 4%
0.00023
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-617