
CVE-2016-7522
https://notcve.org/view.php?id=CVE-2016-7522
19 Apr 2017 — The ReadPSDImage function in MagickCore/locale.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file. La función ReadPSDImage en MagickCore/locale.c en ImageMagick permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) a través de un archivo PSD manipulado. • http://www.openwall.com/lists/oss-security/2016/09/22/2 • CWE-125: Out-of-bounds Read •

CVE-2016-7533
https://notcve.org/view.php?id=CVE-2016-7533
19 Apr 2017 — The ReadWPGImage function in coders/wpg.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WPG file. La función ReadWPGImage en coders/wpg.c en ImageMagick permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) a través de un archivo WPG manipulado. • http://www.openwall.com/lists/oss-security/2016/09/22/2 • CWE-125: Out-of-bounds Read •

CVE-2016-7515
https://notcve.org/view.php?id=CVE-2016-7515
19 Apr 2017 — The ReadRLEImage function in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via vectors related to the number of pixels. La función ReadRLEImage en coders/rle.c en ImageMagick permite a atacantes provocar una denegación de servicio (lectura fuera de límites) a través de vectores relacionados con el número de píxeles. • http://www.openwall.com/lists/oss-security/2016/09/22/2 • CWE-125: Out-of-bounds Read •

CVE-2016-7519
https://notcve.org/view.php?id=CVE-2016-7519
19 Apr 2017 — The ReadRLEImage function in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file. La función ReadRLEImage en coders/rle.c en ImageMagick permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) a través de un archivo manipulado. • http://www.openwall.com/lists/oss-security/2016/09/22/2 • CWE-125: Out-of-bounds Read •

CVE-2016-7537
https://notcve.org/view.php?id=CVE-2016-7537
19 Apr 2017 — MagickCore/memory.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted PDB file. MagickCore/memory.c en ImageMagick permite a atacantes remotos provocar una denegación de servicio (acceso fuera de límites) a través de un archivo PDB manipulado. • http://www.openwall.com/lists/oss-security/2016/09/22/2 • CWE-125: Out-of-bounds Read •

CVE-2017-7943 – Ubuntu Security Notice USN-3302-1
https://notcve.org/view.php?id=CVE-2017-7943
18 Apr 2017 — The ReadSVGImage function in svg.c in ImageMagick 7.0.5-4 allows remote attackers to consume an amount of available memory via a crafted file. La función ReadSVGImage en svg.c en ImageMagick 7.0.5-4 permite a atacantes remotos consumir una cantidad de memoria disponible a través de un archivo manipulado. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could e... • http://www.debian.org/security/2017/dsa-3863 • CWE-772: Missing Release of Resource after Effective Lifetime •

CVE-2017-7941 – Ubuntu Security Notice USN-3302-1
https://notcve.org/view.php?id=CVE-2017-7941
18 Apr 2017 — The ReadSGIImage function in sgi.c in ImageMagick 7.0.5-4 allows remote attackers to consume an amount of available memory via a crafted file. La función ReadSGIImage en sgi.c en ImageMagick 7.0.5-4 permite a atacantes remotos consumir una cantidad de memoria disponible a través de un archivo manipulado. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could e... • http://www.debian.org/security/2017/dsa-3863 • CWE-772: Missing Release of Resource after Effective Lifetime •

CVE-2017-7942 – Ubuntu Security Notice USN-3302-1
https://notcve.org/view.php?id=CVE-2017-7942
18 Apr 2017 — The ReadAVSImage function in avs.c in ImageMagick 7.0.5-4 allows remote attackers to consume an amount of available memory via a crafted file. La función ReadAVSImage en avs.c en ImageMagick 7.0.5-4 permite a atacantes remotos consumir una cantidad de memoria disponible a través de un archivo manipulado. It was discovered that ImageMagick incorrectly handled certain malformed image files. If a user or automated system using ImageMagick were tricked into opening a specially crafted image, an attacker could e... • http://www.securityfocus.com/bid/97946 • CWE-772: Missing Release of Resource after Effective Lifetime •

CVE-2017-7619 – Ubuntu Security Notice USN-3302-1
https://notcve.org/view.php?id=CVE-2017-7619
10 Apr 2017 — In ImageMagick 7.0.4-9, an infinite loop can occur because of a floating-point rounding error in some of the color algorithms. This affects ModulateHSL, ModulateHCL, ModulateHCLp, ModulateHSB, ModulateHSI, ModulateHSV, ModulateHWB, ModulateLCHab, and ModulateLCHuv. En ImageMagick 7.0.4-9, un bucle infinito puede ocurrir debido a un error de redondeo de punto flotante en algunos de los algoritmos de color. Esto afecta a ModulateHSL, ModulateHCL, ModulateHCLp, ModulateHSB, ModulateHSI, ModulateHSV, ModulateHW... • http://www.debian.org/security/2017/dsa-3863 • CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop') •

CVE-2017-7606 – Ubuntu Security Notice USN-3302-1
https://notcve.org/view.php?id=CVE-2017-7606
09 Apr 2017 — coders/rle.c in ImageMagick 7.0.5-4 has an "outside the range of representable values of type unsigned char" undefined behavior issue, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted image. coders/rle.c en ImageMagick 7.0.5-4 tiene un problema de comportamiento "fuera de rango de valores representables de caracter sin signo" no definido, lo que podrían permitir a atacantes remotos provocar una denegación de servicio ... • http://www.debian.org/security/2017/dsa-3863 • CWE-20: Improper Input Validation •