Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-20246

Опубликовано: 09 мар. 2021
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 7.1
CVSS3: 5.5

Описание

A flaw was found in ImageMagick in MagickCore/resample.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to system availability.

РелизСтатусПримечание
bionic

released

8:6.9.7.4+dfsg-16ubuntu6.12
devel

released

8:6.9.11.60+dfsg-1.3ubuntu1
esm-apps/focal

released

8:6.9.10.23+dfsg-2.1ubuntu11.9
esm-apps/jammy

released

8:6.9.11.60+dfsg-1.3ubuntu0.22.04.1+esm1
esm-apps/noble

released

8:6.9.11.60+dfsg-1.3ubuntu1
esm-infra-legacy/trusty

released

8:6.7.7.10-6ubuntu3.13+esm1
esm-infra/bionic

released

8:6.9.7.4+dfsg-16ubuntu6.12
esm-infra/xenial

released

8:6.8.9.9-7ubuntu5.16+esm1
focal

released

8:6.9.10.23+dfsg-2.1ubuntu11.9
groovy

ignored

end of life

Показывать по

EPSS

Процентиль: 39%
0.00173
Низкий

7.1 High

CVSS2

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
redhat
около 5 лет назад

A flaw was found in ImageMagick in MagickCore/resample.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to system availability.

CVSS3: 5.5
nvd
почти 5 лет назад

A flaw was found in ImageMagick in MagickCore/resample.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to system availability.

CVSS3: 5.5
debian
почти 5 лет назад

A flaw was found in ImageMagick in MagickCore/resample.c. An attacker ...

CVSS3: 5.5
github
больше 3 лет назад

A flaw was found in ImageMagick in MagickCore/resample.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to system availability.

CVSS3: 6.5
fstec
почти 5 лет назад

Уязвимость файла MagickCore/resample.c. набора программ для чтения и редактирования файлов ImageMagisk, связанная с отсутствием проверки деления на ноль, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 39%
0.00173
Низкий

7.1 High

CVSS2

5.5 Medium

CVSS3