Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Lifuhao

Pesquisador deAliyun Security Team
#17533de 53,638
15.3CVSS total
Vulnerabilidades · 2
Média
1
Alta
1
PT-2017-13322
6.5
2017-09-11
Imagemagick · Imagemagick · CVE-2017-14248
**Name of the Vulnerable Software and Affected Versions** ImageMagick version 7.0.6-8 Q16 **Description** A heap-based buffer over-read issue in the SampleImage() function in MagickCore/resize.c allows remote attackers to cause a denial of service via a crafted file. **Recommendations** For ImageMagick version 7.0.6-8 Q16, consider updating to a newer version that contains a fix for this issue, as using a crafted file can cause a denial of service.
PT-2017-13304
8.8
2017-09-08
Imagemagick · Imagemagick · CVE-2017-14224
**Name of the Vulnerable Software and Affected Versions** ImageMagick version 7.0.6-8 Q16 **Description** A heap-based buffer overflow issue exists, allowing remote attackers to potentially cause a denial of service or achieve code execution. This is possible through a crafted file. **Recommendations** For ImageMagick version 7.0.6-8 Q16, update to a version that addresses this issue to prevent potential exploitation.