Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
–

125 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.5)14%💥 ExploitGraphicsmagickDebian Linux1/11/201717/6/2026
GraphicsMagick 1.3.26 is vulnerable to a memory information disclosure vulnerability found in the DescribeImage function of the magick/describe.c file, because of a heap-based buffer over-read. The portion of the code containing the vulnerability is responsible for printing the IPTC Profile information contained in…
ModificadaAlta (8.8)15%💥 ExploitGraphicsmagickDebian Linux1/11/201717/6/2026
GraphicsMagick 1.3.26 is vulnerable to a heap-based buffer overflow vulnerability found in the "Display visual image directory" feature of the DescribeImage() function of the magick/describe.c file. One possible way to trigger the vulnerability is to run the identify command on a specially crafted MIFF format file…
ModificadaAlta (8.8)2.6%—GraphicsmagickDebian Linux27/10/201717/6/2026
In ReadOneJNGImage in coders/png.c in GraphicsMagick 1.3.26, a Null Pointer Dereference occurs while transferring JPEG scanlines, related to a PixelPacket pointer.
ModificadaMedia (6.5)19%💥 PoCGraphicsmagickImagemagick12/10/201717/6/2026
ReadGIFImage in coders/gif.c in ImageMagick 7.0.6-1 and GraphicsMagick 1.3.26 leaves the palette uninitialized when processing a GIF file that has neither a global nor local palette. If the affected product is used as a library loaded into a process that operates on interesting data, this data sometimes can be leaked…
ModificadaAlta (8.8)1.8%—GraphicsmagickDebian Linux11/10/201717/6/2026
ReadOneJNGImage in coders/png.c in GraphicsMagick 1.3.26 has a use-after-free issue when the height or width is zero, related to ReadJNGImage.
ModificadaMedia (6.5)3.4%—GraphicsmagickDebian Linux4/10/201717/6/2026
GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (excessive memory allocation) because of an integer underflow in ReadPICTImage in coders/pict.c.
ModificadaMedia (6.5)2.9%—GraphicsmagickDebian Linux4/10/201717/6/2026
ReadDCMImage in coders/dcm.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted DICOM image, related to the ability of DCM_ReadNonNativeImages to yield an image list with zero frames.
ModificadaMedia (6.5)2.1%—GraphicsmagickDebian Linux25/9/201717/6/2026
ReadRLEImage in coders/rle.c in GraphicsMagick 1.3.26 mishandles RLE headers that specify too few colors, which allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file.
ModificadaMedia (5.5)1.3%—Graphicsmagick21/9/201717/6/2026
ReadOneJNGImage in coders/png.c in GraphicsMagick version 1.3.26 does not properly validate JNG data, leading to a denial of service (assertion failure in magick/pixel_cache.c, and application crash).
ModificadaMedia (6.5)2.4%—GraphicsmagickDebian Linux17/9/201717/6/2026
ReadPNMImage in coders/pnm.c in GraphicsMagick 1.3.26 does not ensure the correct number of colors for the XV 332 format, leading to a NULL Pointer Dereference.
ModificadaMedia (6.5)1.9%—GraphicsmagickDebian Linux12/9/201717/6/2026
Off-by-one error in the DrawImage function in magick/render.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (DrawDashPolygon heap-based buffer over-read and application crash) via a crafted file.
ModificadaMedia (6.5)2.3%—Graphicsmagick6/9/201717/6/2026
The ReadSUNImage function in coders/sun.c in GraphicsMagick 1.3.26 has an issue where memory allocation is excessive because it depends only on a length field in a header. This may lead to remote denial of service in the MagickMalloc function in magick/memory.c.
ModificadaAlta (8.8)30%—Graphicsmagick1/9/201717/6/2026
The ReadJNGImage and ReadOneJNGImage functions in coders/png.c in GraphicsMagick 1.3.26 do not properly manage image pointers after certain error conditions, which allows remote attackers to conduct use-after-free attacks via a crafted file, related to a ReadMNGImage out-of-order CloseBlob call. NOTE: this…
ModificadaMedia (6.5)2.4%—Graphicsmagick30/8/201717/6/2026
A memory allocation failure was discovered in the ReadPNMImage function in coders/pnm.c in GraphicsMagick 1.3.26. The vulnerability causes a big memory allocation, which may lead to remote denial of service in the MagickRealloc function in magick/memory.c.
ModificadaMedia (6.5)2.1%—GraphicsmagickDebian Linux30/8/201717/6/2026
GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version==10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.
ModificadaMedia (6.5)2.4%—GraphicsmagickDebian Linux30/8/201717/6/2026
GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version!=10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it.
ModificadaMedia (6.5)2.1%—GraphicsmagickDebian Linux30/8/201717/6/2026
GraphicsMagick 1.3.26 has a denial of service issue in ReadJNXImage() in coders/jnx.c whereby large amounts of CPU and memory resources may be consumed although the file itself does not support the requests.
ModificadaMedia (6.5)2.7%—GraphicsmagickDebian Linux29/8/201717/6/2026
There is an invalid free in the MagickFree function in magick/memory.c in GraphicsMagick 1.3.26 that will lead to a remote denial of service attack.
ModificadaMedia (6.5)1.8%—Graphicsmagick29/8/201717/6/2026
There are lots of memory leaks in the GMCommand function in magick/command.c in GraphicsMagick 1.3.26 that will lead to a remote denial of service attack.
ModificadaMedia (6.5)1.4%—Graphicsmagick23/8/201717/6/2026
In GraphicsMagick 1.3.26, a memory leak vulnerability was found in the function ReadMATImage in coders/mat.c.
ModificadaAlta (8.8)1.5%—Graphicsmagick23/8/201717/6/2026
In GraphicsMagick 1.3.26, an allocation failure vulnerability was found in the function ReadMNGImage in coders/png.c when a small MNG file has a MEND chunk with a large length value.
ModificadaMedia (6.5)1.4%—Graphicsmagick22/8/201717/6/2026
GraphicsMagick 1.3.26 has a memory leak vulnerability in the function CloneImage in magick/image.c.
ModificadaMedia (6.5)1.7%—GraphicsmagickDebian Linux22/8/201717/6/2026
GraphicsMagick 1.3.26 has a NULL pointer dereference vulnerability in the function SVGStartElement in coders/svg.c.
ModificadaMedia (6.5)2.3%—GraphicsmagickDebian Linux22/8/201717/6/2026
GraphicsMagick 1.3.26 has a heap-based buffer overflow vulnerability in the function GetStyleTokens in coders/svg.c:311:12.
ModificadaMedia (6.5)1.8%—GraphicsmagickDebian Linux22/8/201717/6/2026
GraphicsMagick 1.3.26 has a heap-based buffer overflow vulnerability in the function GetStyleTokens in coders/svg.c:314:12.
Orbitaley — Vulnerabilidades