Описание
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-12, using Magick to read a malicious SVG file resulted in a DoS attack. Version 7.1.2-12 fixes the issue.
Уязвимые конфигурации
Конфигурация 1Версия до 7.1.2-12 (исключая)
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
EPSS
Процентиль: 25%
0.00085
Низкий
5.3 Medium
CVSS3
7.5 High
CVSS3
Дефекты
CWE-674
Связанные уязвимости
CVSS3: 5.3
ubuntu
около 1 месяца назад
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-12, using Magick to read a malicious SVG file resulted in a DoS attack. Version 7.1.2-12 fixes the issue.
CVSS3: 5.3
debian
около 1 месяца назад
ImageMagick is free and open-source software used for editing and mani ...
CVSS3: 5.3
github
около 1 месяца назад
ImageMagick's failure to limit the depth of SVG file reads caused a DoS attack
EPSS
Процентиль: 25%
0.00085
Низкий
5.3 Medium
CVSS3
7.5 High
CVSS3
Дефекты
CWE-674