
CVE-2017-12428 – Debian Security Advisory 4019-1
https://notcve.org/view.php?id=CVE-2017-12428
04 Aug 2017 — In ImageMagick 7.0.6-1, a memory leak vulnerability was found in the function ReadWMFImage in coders/wmf.c, which allows attackers to cause a denial of service in CloneDrawInfo in draw.c. Se ha encontrado una vulnerabilidad de filtrado de memoria en ImageMagick 7.0.6-1 en la función ReadWMFImage en coders/wmf.c. Esta vulnerabilidad permite que los atacantes provoquen una denegación de servicio en CloneDrawInfo en draw.c. This update fixes several vulnerabilities in imagemagick. Various memory handling probl... • http://www.securityfocus.com/bid/100145 • CWE-772: Missing Release of Resource after Effective Lifetime •

CVE-2017-12429 – Ubuntu Security Notice USN-3681-1
https://notcve.org/view.php?id=CVE-2017-12429
04 Aug 2017 — In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadMIFFImage in coders/miff.c, which allows attackers to cause a denial of service. Se ha encontrado una vulnerabilidad de agotamiento de memoria en ImageMagick 7.0.6-1 en la función ReadMIFFImage en coders/miff.c. Esta vulnerabilidad permite que los atacantes causen una denegación de servicio. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagi... • https://github.com/ImageMagick/ImageMagick/issues/545 • CWE-770: Allocation of Resources Without Limits or Throttling •

CVE-2017-12430 – Ubuntu Security Notice USN-3681-1
https://notcve.org/view.php?id=CVE-2017-12430
04 Aug 2017 — In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadMPCImage in coders/mpc.c, which allows attackers to cause a denial of service. Se ha encontrado una vulnerabilidad de agotamiento de memoria en ImageMagick 7.0.6-1 en la función ReadMPCImage en coders/mpc.c. Esta vulnerabilidad permite que los atacantes causen una denegación de servicio. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick w... • http://www.securityfocus.com/bid/100157 • CWE-770: Allocation of Resources Without Limits or Throttling •

CVE-2017-12431 – Debian Security Advisory 4019-1
https://notcve.org/view.php?id=CVE-2017-12431
04 Aug 2017 — In ImageMagick 7.0.6-1, a use-after-free vulnerability was found in the function ReadWMFImage in coders/wmf.c, which allows attackers to cause a denial of service. Se ha encontrado una vulnerabilidad de uso después de liberación de memoria (use-after-free) en ImageMagick 7.0.6-1 en la función ReadWMFImage en coders/wmf.c. Esta vulnerabilidad permite que los atacantes causen una denegación de servicio. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automate... • https://github.com/ImageMagick/ImageMagick/issues/555 • CWE-416: Use After Free •

CVE-2017-12432 – Debian Security Advisory 4019-1
https://notcve.org/view.php?id=CVE-2017-12432
04 Aug 2017 — In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadPCXImage in coders/pcx.c, which allows attackers to cause a denial of service. Se ha encontrado una vulnerabilidad de agotamiento de memoria en ImageMagick 7.0.6-1, en la función ReadPCXImage en coders/pcx.c. Esta vulnerabilidad permite que los atacantes causen una denegación de servicio. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick ... • https://github.com/ImageMagick/ImageMagick/issues/536 • CWE-770: Allocation of Resources Without Limits or Throttling •

CVE-2017-12433 – Ubuntu Security Notice USN-3681-1
https://notcve.org/view.php?id=CVE-2017-12433
04 Aug 2017 — In ImageMagick 7.0.6-1, a memory leak vulnerability was found in the function ReadPESImage in coders/pes.c, which allows attackers to cause a denial of service, related to ResizeMagickMemory in memory.c. Se ha encontrado una vulnerabilidad de filtrado de memoria en ImageMagick 7.0.6-1 en la función ReadPESImage en coders/pes.c. Esta vulnerabilidad permite que los atacantes provoquen una denegación de servicio relacionada con ResizeMagickMemory en memory.c. It was discovered that ImageMagick incorrectly hand... • https://github.com/ImageMagick/ImageMagick/issues/548 • CWE-772: Missing Release of Resource after Effective Lifetime •

CVE-2017-12434 – Debian Security Advisory 4019-1
https://notcve.org/view.php?id=CVE-2017-12434
04 Aug 2017 — In ImageMagick 7.0.6-1, a missing NULL check vulnerability was found in the function ReadMATImage in coders/mat.c, which allows attackers to cause a denial of service (assertion failure) in DestroyImageInfo in image.c. Se ha encontrado una vulnerabilidad de falta de comprobación NULL en ImageMagick 7.0.6-1, en la función ReadMATImage en coders/mat.c. Esta vulnerabilidad permite que los atacantes provoquen una denegación de servicio (fallo de aserción) en DestroyImageInfo en image.c. This update fixes severa... • https://github.com/ImageMagick/ImageMagick/issues/547 • CWE-617: Reachable Assertion •

CVE-2017-12435 – Ubuntu Security Notice USN-3681-1
https://notcve.org/view.php?id=CVE-2017-12435
04 Aug 2017 — In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadSUNImage in coders/sun.c, which allows attackers to cause a denial of service. Se ha encontrado una vulnerabilidad de agotamiento de memoria en ImageMagick 7.0.6-1, en la función ReadSUNImage en coders/sun.c. Esta vulnerabilidad permite que los atacantes causen una denegación de servicio. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick ... • http://www.securityfocus.com/bid/100152 • CWE-770: Allocation of Resources Without Limits or Throttling •

CVE-2017-12427 – Gentoo Linux Security Advisory 201711-07
https://notcve.org/view.php?id=CVE-2017-12427
04 Aug 2017 — The ProcessMSLScript function in coders/msl.c in ImageMagick before 6.9.9-5 and 7.x before 7.0.6-5 allows remote attackers to cause a denial of service (memory leak) via a crafted file, related to the WriteMSLImage function. La función ProcessMSLScript en coders/msl.c de ImageMagick anterior a la versión 6.9.9-5 y 7.x anterior a 7.0.6-5 permite que atacantes remotos provoquen una denegación de servicio (filtrado de memoria) mediante un archivo manipulado, relacionado con la función WriteMSLImage. Multiple v... • https://github.com/ImageMagick/ImageMagick/commit/e793eb203e5e0f91f5037aed6585e81b1e27395b • CWE-772: Missing Release of Resource after Effective Lifetime •

CVE-2017-12418 – Ubuntu Security Notice USN-3681-1
https://notcve.org/view.php?id=CVE-2017-12418
04 Aug 2017 — ImageMagick 7.0.6-5 has memory leaks in the parse8BIMW and format8BIM functions in coders/meta.c, related to the WriteImage function in MagickCore/constitute.c. ImageMagick 7.0.6-5 sufre fugas de memoria en las funciones parse8BIMW y format8BIM en coders/meta.c relacionadas con la función WriteImage en MagickCore/constitute.c. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted ima... • https://github.com/ImageMagick/ImageMagick/issues/643 • CWE-772: Missing Release of Resource after Effective Lifetime •