Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p8cw-ccq5-gwg9

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

ImageMagick before 7.0.8-55 has a use-after-free in DestroyStringInfo in MagickCore/string.c because the error manager is mishandled in coders/jpeg.c.

ImageMagick before 7.0.8-55 has a use-after-free in DestroyStringInfo in MagickCore/string.c because the error manager is mishandled in coders/jpeg.c.

EPSS

Процентиль: 49%
0.00261
Низкий

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 6 лет назад

ImageMagick before 7.0.8-55 has a use-after-free in DestroyStringInfo in MagickCore/string.c because the error manager is mishandled in coders/jpeg.c.

CVSS3: 7.8
redhat
около 6 лет назад

ImageMagick before 7.0.8-55 has a use-after-free in DestroyStringInfo in MagickCore/string.c because the error manager is mishandled in coders/jpeg.c.

CVSS3: 8.8
nvd
почти 6 лет назад

ImageMagick before 7.0.8-55 has a use-after-free in DestroyStringInfo in MagickCore/string.c because the error manager is mishandled in coders/jpeg.c.

CVSS3: 8.8
debian
почти 6 лет назад

ImageMagick before 7.0.8-55 has a use-after-free in DestroyStringInfo ...

oracle-oval
больше 5 лет назад

ELSA-2020-1180: ImageMagick security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 49%
0.00261
Низкий

Дефекты

CWE-416