Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Lifuhao

Researcher fromAliyun Security Team
#17511of 53,634
15.3Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2017-13322
6.5
2017-09-11
Imagemagick · Imagemagick · CVE-2017-14248
**Name of the Vulnerable Software and Affected Versions** ImageMagick version 7.0.6-8 Q16 **Description** A heap-based buffer over-read issue in the SampleImage() function in MagickCore/resize.c allows remote attackers to cause a denial of service via a crafted file. **Recommendations** For ImageMagick version 7.0.6-8 Q16, consider updating to a newer version that contains a fix for this issue, as using a crafted file can cause a denial of service.
PT-2017-13304
8.8
2017-09-08
Imagemagick · Imagemagick · CVE-2017-14224
**Name of the Vulnerable Software and Affected Versions** ImageMagick version 7.0.6-8 Q16 **Description** A heap-based buffer overflow issue exists, allowing remote attackers to potentially cause a denial of service or achieve code execution. This is possible through a crafted file. **Recommendations** For ImageMagick version 7.0.6-8 Q16, update to a version that addresses this issue to prevent potential exploitation.