Описание
ImageMagick has a heap-buffer-overflow
Summary
While Processing a crafted TIFF file, imagemagick crashes.
Details
Following is the imagemagick version:
PoC
issue can be replicated with following command with provided POC file(sent over email):
Impact
This can lead to application crash.
Credits
Please give credits to Hardik shah of Vehere (Dawn Treaders team)
Пакеты
Magick.NET-Q16-AnyCPU
< 13.2.0
13.2.0
Magick.NET-Q16-HDRI-AnyCPU
< 13.2.0
13.2.0
Magick.NET-Q16-HDRI-OpenMP-arm64
< 13.2.0
13.2.0
Magick.NET-Q16-HDRI-OpenMP-x64
< 13.2.0
13.2.0
Magick.NET-Q16-HDRI-arm64
< 13.2.0
13.2.0
Magick.NET-Q16-HDRI-x64
< 13.2.0
13.2.0
Magick.NET-Q16-HDRI-x86
< 13.2.0
13.2.0
Magick.NET-Q16-OpenMP-arm64
< 13.2.0
13.2.0
Magick.NET-Q16-OpenMP-x64
< 13.2.0
13.2.0
Magick.NET-Q16-arm64
< 13.2.0
13.2.0
Magick.NET-Q16-x64
< 13.2.0
13.2.0
Magick.NET-Q16-x86
< 13.2.0
13.2.0
Magick.NET-Q8-AnyCPU
< 13.2.0
13.2.0
Magick.NET-Q8-OpenMP-arm64
< 13.2.0
13.2.0
Magick.NET-Q8-OpenMP-x64
< 13.2.0
13.2.0
Magick.NET-Q8-arm64
< 13.2.0
13.2.0
Magick.NET-Q8-x64
< 13.2.0
13.2.0
Magick.NET-Q8-x86
< 13.2.0
13.2.0
Связанные уязвимости
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.1-14, ImageMagick crashes when processing a crafted TIFF file. Version 7.1.1-14 fixes the issue.
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.1-14, ImageMagick crashes when processing a crafted TIFF file. Version 7.1.1-14 fixes the issue.
ImageMagick is free and open-source software used for editing and mani ...