Описание
The cineon parsing component in ImageMagick 7.0.8-26 Q16 allows attackers to cause a denial-of-service (uncontrolled resource consumption) by crafting a Cineon image with an incorrect claimed image size. This occurs because ReadCINImage in coders/cin.c lacks a check for insufficient image data in a file.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 8:6.9.7.4+dfsg-16ubuntu6.7 |
| cosmic | released | 8:6.9.10.8+dfsg-1ubuntu2.2 |
| devel | released | 8:6.9.10.23+dfsg-2.1ubuntu2 |
| disco | released | 8:6.9.10.14+dfsg-7ubuntu2.2 |
| esm-apps/focal | released | 8:6.9.10.23+dfsg-2.1ubuntu2 |
| esm-apps/jammy | released | 8:6.9.10.23+dfsg-2.1ubuntu2 |
| esm-apps/noble | released | 8:6.9.10.23+dfsg-2.1ubuntu2 |
| esm-infra-legacy/trusty | released | 8:6.7.7.10-6ubuntu3.13+esm9 |
| esm-infra/bionic | released | 8:6.9.7.4+dfsg-16ubuntu6.7 |
| esm-infra/xenial | released | 8:6.8.9.9-7ubuntu5.14 |
Показывать по
EPSS
7.1 High
CVSS2
6.5 Medium
CVSS3
Связанные уязвимости
The cineon parsing component in ImageMagick 7.0.8-26 Q16 allows attackers to cause a denial-of-service (uncontrolled resource consumption) by crafting a Cineon image with an incorrect claimed image size. This occurs because ReadCINImage in coders/cin.c lacks a check for insufficient image data in a file.
The cineon parsing component in ImageMagick 7.0.8-26 Q16 allows attackers to cause a denial-of-service (uncontrolled resource consumption) by crafting a Cineon image with an incorrect claimed image size. This occurs because ReadCINImage in coders/cin.c lacks a check for insufficient image data in a file.
The cineon parsing component in ImageMagick 7.0.8-26 Q16 allows attack ...
The cineon parsing component in ImageMagick 7.0.8-26 Q16 allows attackers to cause a denial-of-service (uncontrolled resource consumption) by crafting a Cineon image with an incorrect claimed image size. This occurs because ReadCINImage in coders/cin.c lacks a check for insufficient image data in a file.
Уязвимость функции ReadCINImage (coders/cin.c) компонента синтаксического анализа Cineon программы для чтения и редактирования графических файлов ImageMagick, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
7.1 High
CVSS2
6.5 Medium
CVSS3