Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mw6j-c5j9-xc24

Опубликовано: 17 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

In ImageMagick, there is load of misaligned address for type 'double', which requires 8 byte alignment and for type 'float', which requires 4 byte alignment at MagickCore/property.c. Whenever crafted or untrusted input is processed by ImageMagick, this causes a negative impact to application availability or other problems related to undefined behavior.

In ImageMagick, there is load of misaligned address for type 'double', which requires 8 byte alignment and for type 'float', which requires 4 byte alignment at MagickCore/property.c. Whenever crafted or untrusted input is processed by ImageMagick, this causes a negative impact to application availability or other problems related to undefined behavior.

EPSS

Процентиль: 29%
0.00104
Низкий

7.8 High

CVSS3

Дефекты

CWE-704

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 3 лет назад

In ImageMagick, there is load of misaligned address for type 'double', which requires 8 byte alignment and for type 'float', which requires 4 byte alignment at MagickCore/property.c. Whenever crafted or untrusted input is processed by ImageMagick, this causes a negative impact to application availability or other problems related to undefined behavior.

CVSS3: 5.5
redhat
почти 4 года назад

In ImageMagick, there is load of misaligned address for type 'double', which requires 8 byte alignment and for type 'float', which requires 4 byte alignment at MagickCore/property.c. Whenever crafted or untrusted input is processed by ImageMagick, this causes a negative impact to application availability or other problems related to undefined behavior.

CVSS3: 7.8
nvd
больше 3 лет назад

In ImageMagick, there is load of misaligned address for type 'double', which requires 8 byte alignment and for type 'float', which requires 4 byte alignment at MagickCore/property.c. Whenever crafted or untrusted input is processed by ImageMagick, this causes a negative impact to application availability or other problems related to undefined behavior.

CVSS3: 7.8
debian
больше 3 лет назад

In ImageMagick, there is load of misaligned address for type 'double', ...

CVSS3: 7.5
fstec
почти 4 года назад

Уязвимость компонента MagickCore/property.c консольного графического редактора ImageMagick, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

EPSS

Процентиль: 29%
0.00104
Низкий

7.8 High

CVSS3

Дефекты

CWE-704