
CVE-2016-7799 – Ubuntu Security Notice USN-3142-1
https://notcve.org/view.php?id=CVE-2016-7799
30 Nov 2016 — MagickCore/profile.c in ImageMagick before 7.0.3-2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file. MagickCore/profile.c en ImageMagick en versiones anteriores a 7.0.3-2 permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) a través de un archivo manipulado. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially... • http://www.debian.org/security/2016/dsa-3726 • CWE-125: Out-of-bounds Read •

CVE-2016-7906 – Ubuntu Security Notice USN-3142-1
https://notcve.org/view.php?id=CVE-2016-7906
30 Nov 2016 — magick/attribute.c in ImageMagick 7.0.3-2 allows remote attackers to cause a denial of service (use-after-free) via a crafted file. magick/attribute.c en ImageMagick 7.0.3-2 permite a atacantes remotos provocar una denegación de servicio (uso después de liberación) a través de un archivo manipulado. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploi... • http://www.debian.org/security/2016/dsa-3726 • CWE-416: Use After Free •

CVE-2016-8862 – Ubuntu Security Notice USN-3142-1
https://notcve.org/view.php?id=CVE-2016-8862
30 Nov 2016 — The AcquireMagickMemory function in MagickCore/memory.c in ImageMagick before 7.0.3.3 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure. La función AcquireMagickMemory en MagickCore/memory.c en ImageMagick en versiones anteriores a 7.0.3.3 permite a atacantes remotos tener un impacto no especificado a través de una imagen manipulada, lo que desencadena un fallo de asignación de memoria. It was discovered that ImageMagick incorrectly handled ce... • http://www.debian.org/security/2016/dsa-3726 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2016-9556 – Ubuntu Security Notice USN-3142-1
https://notcve.org/view.php?id=CVE-2016-9556
30 Nov 2016 — The IsPixelGray function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3-8 allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted image file. La función IsPixelGray en MagickCore/pixel-accessor.h en ImageMagick 7.0.3-8 permite a atacantes remotos provocar una denegación de servicio (lectura de memoria dinámica fuera de límites) a través de un archivo de imagen manipulado. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user... • http://lists.opensuse.org/opensuse-updates/2016-12/msg00040.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9833 – Ubuntu Security Notice USN-3131-1
https://notcve.org/view.php?id=CVE-2014-9833
21 Nov 2016 — Heap overflow in ImageMagick 6.8.9-9 via a crafted psd file. Desbordamiento de memoria dinámica en ImageMagick 6.8.9-9 a través de un archivo psd manipulado. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploit this to cause a denial of service or possibly execute code with the privileges of the user invoking the program. • http://www.openwall.com/lists/oss-security/2014/12/24/1 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9834 – Ubuntu Security Notice USN-3131-1
https://notcve.org/view.php?id=CVE-2014-9834
21 Nov 2016 — Heap overflow in ImageMagick 6.8.9-9 via a crafted pict file. Desbordamiento de memoria dinámica en ImageMagick 6.8.9-9 a través de un archivo pict manipulado. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploit this to cause a denial of service or possibly execute code with the privileges of the user invoking the program. • http://www.openwall.com/lists/oss-security/2014/12/24/1 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9835 – Ubuntu Security Notice USN-3131-1
https://notcve.org/view.php?id=CVE-2014-9835
21 Nov 2016 — Heap overflow in ImageMagick 6.8.9-9 via a crafted wpf file. Desbordamiento de memoria dinámica en ImageMagick 6.8.9-9 a través de un archivo wpf manipulado. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploit this to cause a denial of service or possibly execute code with the privileges of the user invoking the program. • http://www.openwall.com/lists/oss-security/2014/12/24/1 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9836 – Ubuntu Security Notice USN-3131-1
https://notcve.org/view.php?id=CVE-2014-9836
21 Nov 2016 — ImageMagick 6.8.9-9 allows remote attackers to cause a denial of service via a crafted xpm file. ImageMagick 6.8.9-9 permite a atacantes remotos provocar una denegación de servicio a través de un archivo xpm manipulado. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploit this to cause a denial of service or possibly execute code with the privileges ... • http://www.openwall.com/lists/oss-security/2014/12/24/1 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9837 – Ubuntu Security Notice USN-3131-1
https://notcve.org/view.php?id=CVE-2014-9837
21 Nov 2016 — coders/pnm.c in ImageMagick 6.9.0-1 Beta and earlier allows remote attackers to cause a denial of service (crash) via a crafted png file. coders/pnm.c en ImageMagick 6.9.0-1 Beta y anterior permite a atacantes remotos provocar una denegación de servicio (caída) a través de un archivo png manipulado. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploi... • http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=26682 • CWE-125: Out-of-bounds Read •

CVE-2014-9838 – Ubuntu Security Notice USN-3131-1
https://notcve.org/view.php?id=CVE-2014-9838
21 Nov 2016 — magick/cache.c in ImageMagick 6.8.9-9 allows remote attackers to cause a denial of service (crash). magick/cache.c en ImageMagick 6.8.9-9 permite a atacantes remotos provocar una denegación de servicio (caída). It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could exploit this to cause a denial of service or possibly execute code with the privileges of the us... • http://www.openwall.com/lists/oss-security/2016/06/02/13 •