CVE-2016-7520
https://notcve.org/view.php?id=CVE-2016-7520
Heap-based buffer overflow in coders/hdr.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted HDR file. Desbordamiento de búfer basado en memoria dinámica en coders/hdr.c en ImageMagick permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) a través de un archivo HDR manipulado. • http://www.openwall.com/lists/oss-security/2016/09/22/2 http://www.securityfocus.com/bid/93131 https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1537213 https://bugzilla.redhat.com/show_bug.cgi?id=1378747 https://github.com/ImageMagick/ImageMagick/commit/14e606db148d6ebcaae20f1e1d6d71903ca4a556 https://github.com/ImageMagick/ImageMagick/issues/90 • CWE-125: Out-of-bounds Read •
CVE-2016-7540
https://notcve.org/view.php?id=CVE-2016-7540
coders/rgf.c in ImageMagick before 6.9.4-10 allows remote attackers to cause a denial of service (assertion failure) by converting an image to rgf format. coders/rgf.c en ImageMagick en versiones anteriores a 6.9.4-10 permite a atacantes remotos provocar una denegación de servicio (error de aserción) mediante la conversión de una imagen en formato rgf. • http://www.openwall.com/lists/oss-security/2016/09/22/2 http://www.securityfocus.com/bid/93228 https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1594060 https://bugzilla.redhat.com/show_bug.cgi?id=1378777 https://github.com/ImageMagick/ImageMagick/commit/a0108a892f9ea3c2bb1e7a49b7d71376c2ecbff7 https://github.com/ImageMagick/ImageMagick/pull/223 • CWE-19: Data Processing Errors •
CVE-2015-8957
https://notcve.org/view.php?id=CVE-2015-8957
Buffer overflow in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (application crash) via a crafted SUN file. Desbordamiento de búfer en ImageMagick en versiones anteriores a 6.9.0-4 Beta permite a atacantes remotos provocar una denegación de servicio (caída de la aplicación) a través de un archivo SUN manipulado. • http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=26838 http://www.openwall.com/lists/oss-security/2016/09/22/2 http://www.securityfocus.com/bid/93125 https://bugzilla.redhat.com/show_bug.cgi?id=1378735 https://github.com/ImageMagick/ImageMagick/commit/450bd716ed3b9186dd10f9e60f630a3d9eeea2a4 https://github.com/ImageMagick/ImageMagick/commit/78f82d9d1c2944725a279acd573a22168dc6e22a https://github.com/ImageMagick/ImageMagick/commit/bd96074b254c6607a0f7731e59f923ad19d5a46d • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-7536
https://notcve.org/view.php?id=CVE-2016-7536
magick/profile.c in ImageMagick allows remote attackers to cause a denial of service (segmentation fault) via a crafted profile. magick/profile.c en ImageMagick permite a atacantes remotos provocar una denegación de servicio (error de segmentación) a través de un perfil manipulado. • http://www.openwall.com/lists/oss-security/2016/09/22/2 http://www.securityfocus.com/bid/93225 https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1545367 https://bugzilla.redhat.com/show_bug.cgi?id=1378772 https://github.com/ImageMagick/ImageMagick/commit/02dadf116124cfba35d7ebd9ced3e5ad0be0f176 https://github.com/ImageMagick/ImageMagick/commit/478cce544fdf1de882d78381768458f397964453 https://github.com/ImageMagick/ImageMagick/issues/130 • CWE-20: Improper Input Validation •
CVE-2016-7529
https://notcve.org/view.php?id=CVE-2016-7529
coders/xcf.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted XCF file. coders/xcf.c en ImageMagick permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) a través de un archivo XCF manipulado. • http://www.openwall.com/lists/oss-security/2016/09/22/2 http://www.securityfocus.com/bid/93131 https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1539051 https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1539052 https://bugzilla.redhat.com/show_bug.cgi?id=1378761 https://github.com/ImageMagick/ImageMagick/commit/a2e1064f288a353bc5fef7f79ccb7683759e775c https://github.com/ImageMagick/ImageMagick/issues/103 https://github.com/ImageMagick/ImageMagick/issues/104 • CWE-125: Out-of-bounds Read •