Описание
ImageMagick before 7.1.2-15 contains a use-after-free vulnerability in the PDB decoder that uses a stale pointer when memory allocation fails. Attackers can trigger this vulnerability by processing malicious PDB files to cause crashes or write a single zero byte to freed memory.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | |
| esm-apps/focal | released | 8:6.9.10.23+dfsg-2.1ubuntu11.11+esm14 |
| esm-apps/jammy | released | 8:6.9.11.60+dfsg-1.3ubuntu0.22.04.5+esm14 |
| esm-apps/noble | released | 8:6.9.12.98+dfsg1-5.2ubuntu0.1~esm13 |
| esm-apps/resolute | not-affected | |
| esm-infra-legacy/trusty | released | 8:6.7.7.10-6ubuntu3.13+esm25 |
| esm-infra-legacy/xenial | released | 8:6.8.9.9-7ubuntu5.16+esm24 |
| esm-infra/bionic | released | 8:6.9.7.4+dfsg-16ubuntu6.15+esm16 |
| jammy | needed | |
| noble | needed |
Показывать по
Ссылки на источники
EPSS
3.7 Low
CVSS3
Связанные уязвимости
ImageMagick before 7.1.2-15 contains a use-after-free vulnerability in the PDB decoder that uses a stale pointer when memory allocation fails. Attackers can trigger this vulnerability by processing malicious PDB files to cause crashes or write a single zero byte to freed memory.
ImageMagick before 7.1.2-15 contains a use-after-free vulnerability in the PDB decoder that uses a stale pointer when memory allocation fails. Attackers can trigger this vulnerability by processing malicious PDB files to cause crashes or write a single zero byte to freed memory.
ImageMagick before 7.1.2-15 contains a use-after-free vulnerability in ...
EPSS
3.7 Low
CVSS3