Описание
The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "ImageTragick."
Релиз | Статус | Примечание |
---|---|---|
artful | ignored | end of life |
bionic | not-affected | 1.3.24-1 |
cosmic | not-affected | 1.3.24-1 |
devel | not-affected | 1.3.24-1 |
esm-apps/bionic | not-affected | 1.3.24-1 |
esm-apps/xenial | released | 1.3.23-1ubuntu0.1 |
esm-infra-legacy/trusty | not-affected | 1.3.18-1ubuntu3.1 |
precise | ignored | end of life |
precise/esm | DNE | precise was needs-triage |
trusty | released | 1.3.18-1ubuntu3.1 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
artful | released | 8:6.8.9.9-7ubuntu7 |
bionic | released | 8:6.8.9.9-7ubuntu7 |
cosmic | released | 8:6.8.9.9-7ubuntu7 |
devel | released | 8:6.8.9.9-7ubuntu7 |
esm-infra-legacy/trusty | not-affected | 8:6.7.7.10-6ubuntu3.1 |
esm-infra/bionic | not-affected | 8:6.8.9.9-7ubuntu7 |
esm-infra/xenial | not-affected | 8:6.8.9.9-7ubuntu5.1 |
precise | released | 8:6.6.9.7-5ubuntu3.4 |
precise/esm | DNE | precise was released [8:6.6.9.7-5ubuntu3.4] |
trusty | released | 8:6.7.7.10-6ubuntu3.1 |
Показывать по
Ссылки на источники
EPSS
10 Critical
CVSS2
8.4 High
CVSS3
Связанные уязвимости
The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "ImageTragick."
The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "ImageTragick."
The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7 ...
The (1) EPHEMERAL, (2) HTTPS, (3) MVG, (4) MSL, (5) TEXT, (6) SHOW, (7) WIN, and (8) PLT coders in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allow remote attackers to execute arbitrary code via shell metacharacters in a crafted image, aka "ImageTragick."
EPSS
10 Critical
CVSS2
8.4 High
CVSS3