CVE-2016-7540
https://notcve.org/view.php?id=CVE-2016-7540
coders/rgf.c in ImageMagick before 6.9.4-10 allows remote attackers to cause a denial of service (assertion failure) by converting an image to rgf format. coders/rgf.c en ImageMagick en versiones anteriores a 6.9.4-10 permite a atacantes remotos provocar una denegación de servicio (error de aserción) mediante la conversión de una imagen en formato rgf. • http://www.openwall.com/lists/oss-security/2016/09/22/2 http://www.securityfocus.com/bid/93228 https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1594060 https://bugzilla.redhat.com/show_bug.cgi?id=1378777 https://github.com/ImageMagick/ImageMagick/commit/a0108a892f9ea3c2bb1e7a49b7d71376c2ecbff7 https://github.com/ImageMagick/ImageMagick/pull/223 • CWE-19: Data Processing Errors •
CVE-2016-7532
https://notcve.org/view.php?id=CVE-2016-7532
coders/psd.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PSD file. coders/psd.c en ImageMagick permite a atacantes remotos provocar una denegación de servicio (lectura fuera de límites) a través de un archivo PSD manipulado. • http://www.openwall.com/lists/oss-security/2016/09/22/2 http://www.securityfocus.com/bid/93131 https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1539066 https://bugzilla.redhat.com/show_bug.cgi?id=1378764 https://github.com/ImageMagick/ImageMagick/commit/4f2c04ea6673863b87ac7f186cbb0d911f74085c https://github.com/ImageMagick/ImageMagick/issues/109 • CWE-125: Out-of-bounds Read •
CVE-2016-7513
https://notcve.org/view.php?id=CVE-2016-7513
Off-by-one error in magick/cache.c in ImageMagick allows remote attackers to cause a denial of service (segmentation fault) via unspecified vectors. Error por un paso en magick/cache.c en ImageMagick permite a atacantes remotos provocar una denegación de servicio (fallo de segmentación) a través de vectores no especificados. • http://www.openwall.com/lists/oss-security/2016/09/22/2 http://www.securityfocus.com/bid/93121 https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=832455 https://bugzilla.redhat.com/show_bug.cgi?id=1378733 https://github.com/ImageMagick/ImageMagick/commit/a54fe0e8600eaf3dc6fe717d3c0398001507f723 • CWE-189: Numeric Errors •
CVE-2015-8957
https://notcve.org/view.php?id=CVE-2015-8957
Buffer overflow in ImageMagick before 6.9.0-4 Beta allows remote attackers to cause a denial of service (application crash) via a crafted SUN file. Desbordamiento de búfer en ImageMagick en versiones anteriores a 6.9.0-4 Beta permite a atacantes remotos provocar una denegación de servicio (caída de la aplicación) a través de un archivo SUN manipulado. • http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=26838 http://www.openwall.com/lists/oss-security/2016/09/22/2 http://www.securityfocus.com/bid/93125 https://bugzilla.redhat.com/show_bug.cgi?id=1378735 https://github.com/ImageMagick/ImageMagick/commit/450bd716ed3b9186dd10f9e60f630a3d9eeea2a4 https://github.com/ImageMagick/ImageMagick/commit/78f82d9d1c2944725a279acd573a22168dc6e22a https://github.com/ImageMagick/ImageMagick/commit/bd96074b254c6607a0f7731e59f923ad19d5a46d • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-7536
https://notcve.org/view.php?id=CVE-2016-7536
magick/profile.c in ImageMagick allows remote attackers to cause a denial of service (segmentation fault) via a crafted profile. magick/profile.c en ImageMagick permite a atacantes remotos provocar una denegación de servicio (error de segmentación) a través de un perfil manipulado. • http://www.openwall.com/lists/oss-security/2016/09/22/2 http://www.securityfocus.com/bid/93225 https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1545367 https://bugzilla.redhat.com/show_bug.cgi?id=1378772 https://github.com/ImageMagick/ImageMagick/commit/02dadf116124cfba35d7ebd9ced3e5ad0be0f176 https://github.com/ImageMagick/ImageMagick/commit/478cce544fdf1de882d78381768458f397964453 https://github.com/ImageMagick/ImageMagick/issues/130 • CWE-20: Improper Input Validation •