Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x4cj-7x5p-w7vf

Опубликовано: 25 фев. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.

EPSS

Процентиль: 34%
0.00136
Низкий

7.5 High

CVSS3

Дефекты

CWE-125
CWE-787

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 4 года назад

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.

CVSS3: 5.3
redhat
больше 4 лет назад

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.

CVSS3: 7.5
nvd
почти 4 года назад

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.

CVSS3: 7.5
debian
почти 4 года назад

A heap-based buffer overflow vulnerability was found in ImageMagick in ...

CVSS3: 7.5
fstec
почти 2 года назад

Уязвимость функции ReadTIFFImage() консольного графического редактора ImageMagick, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 34%
0.00136
Низкий

7.5 High

CVSS3

Дефекты

CWE-125
CWE-787