Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-14172

Опубликовано: 07 сент. 2017
Источник: ubuntu
Приоритет: low
CVSS2: 7.1
CVSS3: 6.5

Описание

In coders/ps.c in ImageMagick 7.0.7-0 Q16, a DoS in ReadPSImage() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted PSD file, which claims a large "extent" field in the header but does not contain sufficient backing data, is provided, the loop over "length" would consume huge CPU resources, since there is no EOF check inside the loop.

РелизСтатусПримечание
artful

released

8:6.9.7.4+dfsg-16ubuntu2.2
bionic

released

8:6.9.7.4+dfsg-16ubuntu6.2
devel

released

8:6.9.7.4+dfsg-16ubuntu8
esm-infra-legacy/trusty

released

8:6.7.7.10-6ubuntu3.11
esm-infra-legacy/xenial

released

8:6.8.9.9-7ubuntu5.11
esm-infra/bionic

released

8:6.9.7.4+dfsg-16ubuntu6.2
esm-infra/xenial

released

8:6.8.9.9-7ubuntu5.11
precise/esm

DNE

trusty

released

8:6.7.7.10-6ubuntu3.11
trusty/esm

released

8:6.7.7.10-6ubuntu3.11

Показывать по

7.1 High

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.3
redhat
почти 9 лет назад

In coders/ps.c in ImageMagick 7.0.7-0 Q16, a DoS in ReadPSImage() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted PSD file, which claims a large "extent" field in the header but does not contain sufficient backing data, is provided, the loop over "length" would consume huge CPU resources, since there is no EOF check inside the loop.

CVSS3: 6.5
nvd
почти 9 лет назад

In coders/ps.c in ImageMagick 7.0.7-0 Q16, a DoS in ReadPSImage() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted PSD file, which claims a large "extent" field in the header but does not contain sufficient backing data, is provided, the loop over "length" would consume huge CPU resources, since there is no EOF check inside the loop.

CVSS3: 6.5
debian
почти 9 лет назад

In coders/ps.c in ImageMagick 7.0.7-0 Q16, a DoS in ReadPSImage() due ...

CVSS3: 6.5
github
больше 4 лет назад

In coders/ps.c in ImageMagick 7.0.7-0 Q16, a DoS in ReadPSImage() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted PSD file, which claims a large "extent" field in the header but does not contain sufficient backing data, is provided, the loop over "length" would consume huge CPU resources, since there is no EOF check inside the loop.

CVSS3: 6.5
fstec
почти 9 лет назад

Уязвимость функции ReadPSImage (coders/ps.c) консольного графического редактора ImageMagick, позволяющая нарушителю вызвать расход вычислительных ресурсов и отказ в обслуживании

7.1 High

CVSS2

6.5 Medium

CVSS3