Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-r2qv-vr5x-prgh

Опубликовано: 17 июн. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

A vulnerability was found in ImageMagick, causing an outside the range of representable values of type 'unsigned char' at coders/psd.c, when crafted or untrusted input is processed. This leads to a negative impact to application availability or other problems related to undefined behavior.

A vulnerability was found in ImageMagick, causing an outside the range of representable values of type 'unsigned char' at coders/psd.c, when crafted or untrusted input is processed. This leads to a negative impact to application availability or other problems related to undefined behavior.

EPSS

Процентиль: 24%
0.00083
Низкий

7.8 High

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 3 лет назад

A vulnerability was found in ImageMagick, causing an outside the range of representable values of type 'unsigned char' at coders/psd.c, when crafted or untrusted input is processed. This leads to a negative impact to application availability or other problems related to undefined behavior.

CVSS3: 3.3
redhat
почти 4 года назад

A vulnerability was found in ImageMagick, causing an outside the range of representable values of type 'unsigned char' at coders/psd.c, when crafted or untrusted input is processed. This leads to a negative impact to application availability or other problems related to undefined behavior.

CVSS3: 7.8
nvd
больше 3 лет назад

A vulnerability was found in ImageMagick, causing an outside the range of representable values of type 'unsigned char' at coders/psd.c, when crafted or untrusted input is processed. This leads to a negative impact to application availability or other problems related to undefined behavior.

CVSS3: 7.8
debian
больше 3 лет назад

A vulnerability was found in ImageMagick, causing an outside the range ...

CVSS3: 7.5
fstec
почти 4 года назад

Уязвимость компонента coders/psd.c консольного графического редактора ImageMagick, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

EPSS

Процентиль: 24%
0.00083
Низкий

7.8 High

CVSS3

Дефекты

CWE-190