PT-2012-2446 · Imagemagick+3 · Imagemagick+3

Aleksis Kauppinen

+2

·

Published

2012-05-07

·

Updated

2020-07-31

·

CVE-2012-0260

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions ImageMagick versions prior to 6.7.6-3
Description The issue allows remote attackers to cause a denial of service, specifically memory consumption, by utilizing a JPEG image with a crafted sequence of restart markers. This is related to the JPEGWarningHandler function in coders/jpeg.c.
Recommendations For versions prior to 6.7.6-3, update to version 6.7.6-3 or later to resolve the issue.

Fix

DoS

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CESA-2012_0544
CVE-2012-0260
DSA-2462-1
RHSA-2012:0544
RHSA-2012:0545
RHSA-2012_0544
RHSA-2012_0545

Affected Products

Centos
Imagemagick
Red Hat
Suse