Описание
ImageMagick has a Path Policy TOCTOU symlink race bypass
domain="path" authorization is checked before final file open/use. A symlink swap between check-time and use-time bypasses policy-denied read/write.
Пакеты
Magick.NET-Q16-AnyCPU
< 14.10.4
14.10.4
Magick.NET-Q16-HDRI-AnyCPU
< 14.10.4
14.10.4
Magick.NET-Q16-HDRI-OpenMP-arm64
< 14.10.4
14.10.4
Magick.NET-Q16-HDRI-OpenMP-x64
< 14.10.4
14.10.4
Magick.NET-Q16-HDRI-arm64
< 14.10.4
14.10.4
Magick.NET-Q16-HDRI-x64
< 14.10.4
14.10.4
Magick.NET-Q16-HDRI-x86
< 14.10.4
14.10.4
Magick.NET-Q16-OpenMP-arm64
< 14.10.4
14.10.4
Magick.NET-Q16-OpenMP-x64
< 14.10.4
14.10.4
Magick.NET-Q16-OpenMP-x86
< 14.10.4
14.10.4
Magick.NET-Q16-arm64
< 14.10.4
14.10.4
Magick.NET-Q16-x64
< 14.10.4
14.10.4
Magick.NET-Q16-x86
< 14.10.4
14.10.4
Magick.NET-Q8-AnyCPU
< 14.10.4
14.10.4
Magick.NET-Q8-OpenMP-arm64
< 14.10.4
14.10.4
Magick.NET-Q8-OpenMP-x64
< 14.10.4
14.10.4
Magick.NET-Q8-arm64
< 14.10.4
14.10.4
Magick.NET-Q8-x64
< 14.10.4
14.10.4
Magick.NET-Q8-x86
< 14.10.4
14.10.4
Связанные уязвимости
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, domain="path" authorization is checked before final file open/use. A symlink swap between check-time and use-time bypasses policy-denied read/write. This vulnerability is fixed in 7.1.2-16 and 6.9.13-41.
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, domain="path" authorization is checked before final file open/use. A symlink swap between check-time and use-time bypasses policy-denied read/write. This vulnerability is fixed in 7.1.2-16 and 6.9.13-41.
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to versions 7.1.2-16 and 6.9.13-41, domain="path" authorization is checked before final file open/use. A symlink swap between check-time and use-time bypasses policy-denied read/write. This vulnerability is fixed in 7.1.2-16 and 6.9.13-41.
ImageMagick is free and open-source software used for editing and mani ...