Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-8707

Опубликовано: 23 дек. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 7.8

Описание

An exploitable out of bounds write exists in the handling of compressed TIFF images in ImageMagicks's convert utility. A crafted TIFF document can lead to an out of bounds write which in particular circumstances could be leveraged into remote code execution. The vulnerability can be triggered through any user controlled TIFF that is handled by this functionality.

РелизСтатусПримечание
devel

released

8:6.9.7.4+dfsg-2ubuntu3
esm-infra-legacy/trusty

released

8:6.7.7.10-6ubuntu3.5
esm-infra/xenial

released

8:6.8.9.9-7ubuntu5.5
precise

released

8:6.6.9.7-5ubuntu3.8
trusty

released

8:6.7.7.10-6ubuntu3.5
trusty/esm

released

8:6.7.7.10-6ubuntu3.5
upstream

released

8:6.9.7.0+dfsg-1
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

released

8:6.8.9.9-7ubuntu5.5

Показывать по

EPSS

Процентиль: 84%
0.02137
Низкий

6.8 Medium

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 4.9
redhat
около 9 лет назад

An exploitable out of bounds write exists in the handling of compressed TIFF images in ImageMagicks's convert utility. A crafted TIFF document can lead to an out of bounds write which in particular circumstances could be leveraged into remote code execution. The vulnerability can be triggered through any user controlled TIFF that is handled by this functionality.

CVSS3: 7.8
nvd
около 9 лет назад

An exploitable out of bounds write exists in the handling of compressed TIFF images in ImageMagicks's convert utility. A crafted TIFF document can lead to an out of bounds write which in particular circumstances could be leveraged into remote code execution. The vulnerability can be triggered through any user controlled TIFF that is handled by this functionality.

CVSS3: 7.8
debian
около 9 лет назад

An exploitable out of bounds write exists in the handling of compresse ...

CVSS3: 7
github
больше 3 лет назад

An exploitable out of bounds write exists in the handling of compressed TIFF images in ImageMagicks's convert utility. A crafted TIFF document can lead to an out of bounds write which in particular circumstances could be leveraged into remote code execution. The vulnerability can be triggered through any user controlled TIFF that is handled by this functionality.

suse-cvrf
около 9 лет назад

Security update for ImageMagick

EPSS

Процентиль: 84%
0.02137
Низкий

6.8 Medium

CVSS2

7.8 High

CVSS3