Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-1185

Опубликовано: 05 июн. 2012
Источник: ubuntu
Приоритет: medium
CVSS2: 6.8
CVSS3: 7.8

Описание

Multiple integer overflows in (1) magick/profile.c or (2) magick/property.c in ImageMagick 6.7.5 and earlier allow remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted offset value in the ResolutionUnit tag in the EXIF IFD0 of an image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0247.

РелизСтатусПримечание
devel

released

8:6.6.9.7-5ubuntu3.1
hardy

ignored

end of life
lucid

released

7:6.5.7.8-1ubuntu1.2
natty

released

7:6.6.2.6-1ubuntu4.1
oneiric

released

8:6.6.0.4-3ubuntu1.1
precise

released

8:6.6.9.7-5ubuntu3.1
upstream

needs-triage

Показывать по

6.8 Medium

CVSS2

7.8 High

CVSS3

Связанные уязвимости

redhat
почти 14 лет назад

Multiple integer overflows in (1) magick/profile.c or (2) magick/property.c in ImageMagick 6.7.5 and earlier allow remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted offset value in the ResolutionUnit tag in the EXIF IFD0 of an image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0247.

CVSS3: 7.8
nvd
больше 13 лет назад

Multiple integer overflows in (1) magick/profile.c or (2) magick/property.c in ImageMagick 6.7.5 and earlier allow remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted offset value in the ResolutionUnit tag in the EXIF IFD0 of an image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0247.

CVSS3: 7.8
debian
больше 13 лет назад

Multiple integer overflows in (1) magick/profile.c or (2) magick/prope ...

CVSS3: 7.8
github
больше 3 лет назад

Multiple integer overflows in (1) magick/profile.c or (2) magick/property.c in ImageMagick 6.7.5 and earlier allow remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted offset value in the ResolutionUnit tag in the EXIF IFD0 of an image. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0247.

6.8 Medium

CVSS2

7.8 High

CVSS3