Описание
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-12, using Magick to read a malicious SVG file resulted in a DoS attack. Version 7.1.2-12 fixes the issue.
Уязвимые конфигурации
Конфигурация 1Версия до 7.1.2-12 (исключая)
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
EPSS
Процентиль: 17%
0.00052
Низкий
5.3 Medium
CVSS3
7.5 High
CVSS3
Дефекты
CWE-674
Связанные уязвимости
CVSS3: 5.3
ubuntu
16 дней назад
ImageMagick is free and open-source software used for editing and manipulating digital images. Prior to version 7.1.2-12, using Magick to read a malicious SVG file resulted in a DoS attack. Version 7.1.2-12 fixes the issue.
CVSS3: 5.3
debian
16 дней назад
ImageMagick is free and open-source software used for editing and mani ...
CVSS3: 5.3
github
16 дней назад
ImageMagick's failure to limit the depth of SVG file reads caused a DoS attack
EPSS
Процентиль: 17%
0.00052
Низкий
5.3 Medium
CVSS3
7.5 High
CVSS3
Дефекты
CWE-674