VYPR

Imagemagick

by ImageMagick

Source repositories

CVEs (830)

  • CVE-2005-0005May 2, 2005
    risk 0.00cvss —epss 0.04

    Heap-based buffer overflow in psd.c for ImageMagick 6.1.0, 6.1.7, and possibly earlier versions allows remote attackers to execute arbitrary code via a .PSD image file with a large number of layers.

  • CVE-2005-0397May 2, 2005
    risk 0.00cvss —epss 0.04

    Format string vulnerability in the SetImageInfo function in image.c for ImageMagick before 6.0.2.5 may allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in a filename argument to convert,…

  • CVE-2005-0760May 2, 2005
    risk 0.00cvss —epss 0.02

    The TIFF decoder in ImageMagick before 6.0 allows remote attackers to cause a denial of service (crash) via a crafted TIFF file.

  • CVE-2005-0761Mar 23, 2005
    risk 0.00cvss —epss 0.02

    Unknown vulnerability in ImageMagick before 6.1.8 allows remote attackers to cause a denial of service (application crash) via a crafted PSD file.

  • CVE-2005-0759Mar 23, 2005
    risk 0.00cvss —epss 0.02

    ImageMagick before 6.0 allows remote attackers to cause a denial of service (application crash) via a TIFF image with an invalid tag.

  • CVE-2004-0981Feb 9, 2005
    risk 0.00cvss —epss 0.06

    Buffer overflow in the EXIF parsing routine in ImageMagick before 6.1.0 allows remote attackers to execute arbitrary code via a certain image file.

  • CVE-2004-0802Dec 31, 2004
    risk 0.00cvss —epss 0.03

    Buffer overflow in the BMP loader in imlib2 before 1.1.2 allows remote attackers to execute arbitrary code via a specially-crafted BMP image, a different vulnerability than CVE-2004-0817.

  • CVE-2004-0817Dec 31, 2004
    risk 0.00cvss —epss 0.05

    Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.

  • CVE-2004-0827Sep 16, 2004
    risk 0.00cvss —epss 0.06

    Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via malformed (1) AVI, (2) BMP, or (3) DIB files.

  • CVE-2003-0555Aug 18, 2003
    risk 0.00cvss —epss 0.02

    ImageMagick 5.4.3.x and earlier allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a "%x" filename, possibly triggering a format string vulnerability.

Page 42 of 42