Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x4cj-7x5p-w7vf

Опубликовано: 25 фев. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.

EPSS

Процентиль: 31%
0.00113
Низкий

7.5 High

CVSS3

Дефекты

CWE-125
CWE-787

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 3 лет назад

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.

CVSS3: 5.3
redhat
около 4 лет назад

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.

CVSS3: 7.5
nvd
больше 3 лет назад

A heap-based buffer overflow vulnerability was found in ImageMagick in versions prior to 7.0.11-14 in ReadTIFFImage() in coders/tiff.c. This issue is due to an incorrect setting of the pixel array size, which can lead to a crash and segmentation fault.

CVSS3: 7.5
debian
больше 3 лет назад

A heap-based buffer overflow vulnerability was found in ImageMagick in ...

CVSS3: 7.5
fstec
больше 1 года назад

Уязвимость функции ReadTIFFImage() консольного графического редактора ImageMagick, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 31%
0.00113
Низкий

7.5 High

CVSS3

Дефекты

CWE-125
CWE-787