Search: "imagemagick"

795 CVEs found

CVE-2003-0455
4.6 MEDIUM

The imagemagick libmagick library 5.5 and earlier creates temporary files insecurely, which allows local users to create or overwrite arbitrary files.

Published: 2003-08-07
Products: 1
Vendors:
imagemagick

ImageMagick 5.4.3.x and earlier allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a "%x" filename, possibly triggering a format string vulnerability.

Published: 2003-08-18
Products: 1
Vendors:
imagemagick

Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a denial of service (application crash) and possibly execute arb...

Published: 2004-09-16
Products: 73
Vendors:
enlightenment mandrakesoft imagemagick ubuntu redhat +4 more
CVE-2004-0981
10.0 HIGH

Buffer overflow in the EXIF parsing routine in ImageMagick before 6.1.0 allows remote attackers to execute arbitrary code via a certain image file.

Published: 2005-02-09
Products: 36
Vendors:
gentoo debian imagemagick suse
CVE-2005-0759
5.0 MEDIUM

ImageMagick before 6.0 allows remote attackers to cause a denial of service (application crash) via a TIFF image with an invalid tag.

Published: 2005-03-23
Products: 13
Vendors:
imagemagick sgi
CVE-2005-0761
5.0 MEDIUM

Unknown vulnerability in ImageMagick before 6.1.8 allows remote attackers to cause a denial of service (application crash) via a crafted PSD file.

Published: 2005-03-23
Products: 31
Vendors:
imagemagick sgi
CVE-2005-1275
5.0 MEDIUM

Heap-based buffer overflow in the ReadPNMImage function in pnm.c for ImageMagick 6.2.1 and earlier allows remote attackers to cause a denial of service (application crash) via a PNM file with a small ...

Published: 2005-04-25
Products: 29
Vendors:
imagemagick graphicsmagick

Heap-based buffer overflow in psd.c for ImageMagick 6.1.0, 6.1.7, and possibly earlier versions allows remote attackers to execute arbitrary code via a .PSD image file with a large number of layers.

Published: 2005-05-02
Products: 57
Vendors:
imagemagick gentoo graphicsmagick sgi suse +1 more

Format string vulnerability in the SetImageInfo function in image.c for ImageMagick before 6.0.2.5 may allow remote attackers to cause a denial of service (application crash) and possibly execute arbi...

Published: 2005-05-02
Products: 4
Vendors:
imagemagick
CVE-2005-0760
5.0 MEDIUM

The TIFF decoder in ImageMagick before 6.0 allows remote attackers to cause a denial of service (crash) via a crafted TIFF file.

Published: 2005-05-02
Products: 12
Vendors:
imagemagick

Heap-based buffer overflow in the SGI parser in ImageMagick before 6.0 allows remote attackers to execute arbitrary code via a crafted SGI image file.

Published: 2005-05-02
Products: 14
Vendors:
imagemagick
CVE-2005-1739
5.0 MEDIUM

The XWD Decoder in ImageMagick before 6.2.2.3, and GraphicsMagick before 1.1.6-r1, allows remote attackers to cause a denial of service (infinite loop) via an image with a zero color mask.

Published: 2005-05-24
Products: 43
Vendors:
imagemagick graphicsmagick

ImageMagick before 6.2.4.2-r1 allows local users in the portage group to increase privileges via a shared object in the Portage temporary build directory, which is added to the search path allowing ob...

Published: 2005-11-16
Products: 58
Vendors:
imagemagick

The delegate code in ImageMagick 6.2.4.5-0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in a filename that is processed by the display command.

Published: 2005-12-31
Products: 1
Vendors:
imagemagick
CVE-2006-0082
5.1 MEDIUM

Format string vulnerability in the SetImageInfo function in image.c for ImageMagick 6.2.3 and other versions, and GraphicsMagick, allows user-assisted attackers to cause a denial of service (crash) an...

Published: 2006-01-04
Products: 1
Vendors:
imagemagick

Heap-based buffer overflow in the libMagick component of ImageMagick 6.0.6.2 might allow attackers to execute arbitrary code via an image index array that triggers the overflow during filename glob ex...

Published: 2006-05-18
Products: 2
Vendors:
imagemagick

Integer overflow in player.c in libwmf 0.2.8.4, as used in multiple products including (1) wv, (2) abiword, (3) freetype, (4) gimp, (5) libgsf, and (6) imagemagick allows remote attackers to execute a...

Published: 2006-07-06
Products: 4
Vendors:
wvware

Integer overflow in the ReadSGIImage function in sgi.c in ImageMagick before 6.2.9 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via large (1)...

Published: 2006-08-15
Products: 29
Vendors:
imagemagick
CVE-2006-3743
5.1 MEDIUM

Multiple buffer overflows in ImageMagick before 6.2.9 allow user-assisted attackers to execute arbitrary code via crafted XCF images.

Published: 2006-08-25
Products: 16
Vendors:
imagemagick
CVE-2006-3744
5.1 MEDIUM

Multiple integer overflows in ImageMagick before 6.2.9 allows user-assisted attackers to execute arbitrary code via crafted Sun Rasterfile (bitmap) images that trigger heap-based buffer overflows.

Published: 2006-08-25
Products: 16
Vendors:
imagemagick