Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-20224

Опубликовано: 25 авг. 2022
Источник: nvd
CVSS3: 5.5
EPSS Низкий

Описание

An integer overflow issue was discovered in ImageMagick's ExportIndexQuantum() function in MagickCore/quantum-export.c. Function calls to GetPixelIndex() could result in values outside the range of representable for the 'unsigned char'. When ImageMagick processes a crafted pdf file, this could lead to an undefined behaviour or a crash.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
Версия до 6.9.11-57 (исключая)
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
Версия от 7.0.0-0 (включая) до 7.0.10-57 (исключая)

EPSS

Процентиль: 3%
0.00019
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-190
CWE-190

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 3 года назад

An integer overflow issue was discovered in ImageMagick's ExportIndexQuantum() function in MagickCore/quantum-export.c. Function calls to GetPixelIndex() could result in values outside the range of representable for the 'unsigned char'. When ImageMagick processes a crafted pdf file, this could lead to an undefined behaviour or a crash.

CVSS3: 5.5
redhat
почти 3 года назад

An integer overflow issue was discovered in ImageMagick's ExportIndexQuantum() function in MagickCore/quantum-export.c. Function calls to GetPixelIndex() could result in values outside the range of representable for the 'unsigned char'. When ImageMagick processes a crafted pdf file, this could lead to an undefined behaviour or a crash.

CVSS3: 5.5
debian
почти 3 года назад

An integer overflow issue was discovered in ImageMagick's ExportIndexQ ...

suse-cvrf
почти 3 года назад

Security update for ImageMagick

CVSS3: 5.5
github
почти 3 года назад

An integer overflow issue was discovered in ImageMagick's ExportIndexQuantum() function in MagickCore/quantum-export.c. Function calls to GetPixelIndex() could result in values outside the range of representable for the 'unsigned char'. When ImageMagick processes a crafted pdf file, this could lead to an undefined behaviour or a crash.

EPSS

Процентиль: 3%
0.00019
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-190
CWE-190