Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-11251

Опубликовано: 18 мая 2018
Источник: ubuntu
Приоритет: low
CVSS2: 4.3
CVSS3: 6.5

Описание

In ImageMagick 7.0.7-23 Q16 x86_64 2018-01-24, there is a heap-based buffer over-read in ReadSUNImage in coders/sun.c, which allows attackers to cause a denial of service (application crash in SetGrayscaleImage in MagickCore/quantize.c) via a crafted SUN image file.

РелизСтатусПримечание
artful

released

8:6.9.7.4+dfsg-16ubuntu2.2
bionic

released

8:6.9.7.4+dfsg-16ubuntu6.2
devel

released

8:6.9.7.4+dfsg-16ubuntu8
esm-infra-legacy/trusty

released

8:6.7.7.10-6ubuntu3.11
esm-infra/bionic

released

8:6.9.7.4+dfsg-16ubuntu6.2
esm-infra/xenial

released

8:6.8.9.9-7ubuntu5.11
precise/esm

DNE

trusty

released

8:6.7.7.10-6ubuntu3.11
trusty/esm

released

8:6.7.7.10-6ubuntu3.11
upstream

released

8:6.9.9.39+dfsg-1

Показывать по

4.3 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 3.3
redhat
около 8 лет назад

In ImageMagick 7.0.7-23 Q16 x86_64 2018-01-24, there is a heap-based buffer over-read in ReadSUNImage in coders/sun.c, which allows attackers to cause a denial of service (application crash in SetGrayscaleImage in MagickCore/quantize.c) via a crafted SUN image file.

CVSS3: 6.5
nvd
больше 7 лет назад

In ImageMagick 7.0.7-23 Q16 x86_64 2018-01-24, there is a heap-based buffer over-read in ReadSUNImage in coders/sun.c, which allows attackers to cause a denial of service (application crash in SetGrayscaleImage in MagickCore/quantize.c) via a crafted SUN image file.

CVSS3: 6.5
debian
больше 7 лет назад

In ImageMagick 7.0.7-23 Q16 x86_64 2018-01-24, there is a heap-based b ...

CVSS3: 6.5
github
больше 3 лет назад

In ImageMagick 7.0.7-23 Q16 x86_64 2018-01-24, there is a heap-based buffer over-read in ReadSUNImage in coders/sun.c, which allows attackers to cause a denial of service (application crash in SetGrayscaleImage in MagickCore/quantize.c) via a crafted SUN image file.

CVSS3: 6.5
fstec
больше 7 лет назад

Уязвимость консольного графического редактора ImageMagick, связанная с некорректной работой с памятью, позволяющая нарушителю вызвать отказ в обслуживании или выполнить произвольный код

4.3 Medium

CVSS2

6.5 Medium

CVSS3