Unrated severityNVD Advisory· Published Aug 7, 2012· Updated Jun 16, 2026
CVE-2012-3437
CVE-2012-3437
Description
The Magick_png_malloc function in coders/png.c in ImageMagick 6.7.8 and earlier does not use the proper variable type for the allocation size, which might allow remote attackers to cause a denial of service (crash) via a crafted PNG file that triggers incorrect memory allocation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:imagemagick:imagemagick:6.7.8-6:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:imagemagick:imagemagick:6.7.8-6:*:*:*:*:*:*:*
- (no CPE)range: <=6.7.8
Patches
Vulnerability mechanics
References
11- secunia.com/advisories/50091nvdVendor Advisory
- lists.opensuse.org/opensuse-updates/2013-03/msg00101.htmlnvd
- secunia.com/advisories/50398nvd
- www.mandriva.com/security/advisoriesnvd
- www.mandriva.com/security/advisoriesnvd
- www.securityfocus.com/bid/54714nvd
- www.securitytracker.com/idnvd
- www.ubuntu.com/usn/USN-1544-1nvd
- bugzilla.redhat.com/show_bug.cginvd
- exchange.xforce.ibmcloud.com/vulnerabilities/77260nvd
- wiki.mageia.org/en/Support/Advisories/MGASA-2012-0243nvd
News mentions
0No linked articles in our index yet.