Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
125 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 14% | 💥 Exploit | GraphicsmagickDebian Linux | 1/11/2017 | 17/6/2026 | GraphicsMagick 1.3.26 is vulnerable to a memory information disclosure vulnerability found in the DescribeImage function of the magick/describe.c file, because of a heap-based buffer over-read. The portion of the code containing the vulnerability is responsible for printing the IPTC Profile information contained in… | |
| Modificada | Alta (8.8) | 15% | 💥 Exploit | GraphicsmagickDebian Linux | 1/11/2017 | 17/6/2026 | GraphicsMagick 1.3.26 is vulnerable to a heap-based buffer overflow vulnerability found in the "Display visual image directory" feature of the DescribeImage() function of the magick/describe.c file. One possible way to trigger the vulnerability is to run the identify command on a specially crafted MIFF format file… | |
| Modificada | Alta (8.8) | 2.6% | — | GraphicsmagickDebian Linux | 27/10/2017 | 17/6/2026 | In ReadOneJNGImage in coders/png.c in GraphicsMagick 1.3.26, a Null Pointer Dereference occurs while transferring JPEG scanlines, related to a PixelPacket pointer. | |
| Modificada | Media (6.5) | 19% | 💥 PoC | GraphicsmagickImagemagick | 12/10/2017 | 17/6/2026 | ReadGIFImage in coders/gif.c in ImageMagick 7.0.6-1 and GraphicsMagick 1.3.26 leaves the palette uninitialized when processing a GIF file that has neither a global nor local palette. If the affected product is used as a library loaded into a process that operates on interesting data, this data sometimes can be leaked… | |
| Modificada | Alta (8.8) | 1.8% | — | GraphicsmagickDebian Linux | 11/10/2017 | 17/6/2026 | ReadOneJNGImage in coders/png.c in GraphicsMagick 1.3.26 has a use-after-free issue when the height or width is zero, related to ReadJNGImage. | |
| Modificada | Media (6.5) | 3.4% | — | GraphicsmagickDebian Linux | 4/10/2017 | 17/6/2026 | GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (excessive memory allocation) because of an integer underflow in ReadPICTImage in coders/pict.c. | |
| Modificada | Media (6.5) | 2.9% | — | GraphicsmagickDebian Linux | 4/10/2017 | 17/6/2026 | ReadDCMImage in coders/dcm.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted DICOM image, related to the ability of DCM_ReadNonNativeImages to yield an image list with zero frames. | |
| Modificada | Media (6.5) | 2.1% | — | GraphicsmagickDebian Linux | 25/9/2017 | 17/6/2026 | ReadRLEImage in coders/rle.c in GraphicsMagick 1.3.26 mishandles RLE headers that specify too few colors, which allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file. | |
| Modificada | Media (5.5) | 1.3% | — | Graphicsmagick | 21/9/2017 | 17/6/2026 | ReadOneJNGImage in coders/png.c in GraphicsMagick version 1.3.26 does not properly validate JNG data, leading to a denial of service (assertion failure in magick/pixel_cache.c, and application crash). | |
| Modificada | Media (6.5) | 2.4% | — | GraphicsmagickDebian Linux | 17/9/2017 | 17/6/2026 | ReadPNMImage in coders/pnm.c in GraphicsMagick 1.3.26 does not ensure the correct number of colors for the XV 332 format, leading to a NULL Pointer Dereference. | |
| Modificada | Media (6.5) | 1.9% | — | GraphicsmagickDebian Linux | 12/9/2017 | 17/6/2026 | Off-by-one error in the DrawImage function in magick/render.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (DrawDashPolygon heap-based buffer over-read and application crash) via a crafted file. | |
| Modificada | Media (6.5) | 2.3% | — | Graphicsmagick | 6/9/2017 | 17/6/2026 | The ReadSUNImage function in coders/sun.c in GraphicsMagick 1.3.26 has an issue where memory allocation is excessive because it depends only on a length field in a header. This may lead to remote denial of service in the MagickMalloc function in magick/memory.c. | |
| Modificada | Alta (8.8) | 30% | — | Graphicsmagick | 1/9/2017 | 17/6/2026 | The ReadJNGImage and ReadOneJNGImage functions in coders/png.c in GraphicsMagick 1.3.26 do not properly manage image pointers after certain error conditions, which allows remote attackers to conduct use-after-free attacks via a crafted file, related to a ReadMNGImage out-of-order CloseBlob call. NOTE: this… | |
| Modificada | Media (6.5) | 2.4% | — | Graphicsmagick | 30/8/2017 | 17/6/2026 | A memory allocation failure was discovered in the ReadPNMImage function in coders/pnm.c in GraphicsMagick 1.3.26. The vulnerability causes a big memory allocation, which may lead to remote denial of service in the MagickRealloc function in magick/memory.c. | |
| Modificada | Media (6.5) | 2.1% | — | GraphicsmagickDebian Linux | 30/8/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version==10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it. | |
| Modificada | Media (6.5) | 2.4% | — | GraphicsmagickDebian Linux | 30/8/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version!=10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted file itself does not request it. | |
| Modificada | Media (6.5) | 2.1% | — | GraphicsmagickDebian Linux | 30/8/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a denial of service issue in ReadJNXImage() in coders/jnx.c whereby large amounts of CPU and memory resources may be consumed although the file itself does not support the requests. | |
| Modificada | Media (6.5) | 2.7% | — | GraphicsmagickDebian Linux | 29/8/2017 | 17/6/2026 | There is an invalid free in the MagickFree function in magick/memory.c in GraphicsMagick 1.3.26 that will lead to a remote denial of service attack. | |
| Modificada | Media (6.5) | 1.8% | — | Graphicsmagick | 29/8/2017 | 17/6/2026 | There are lots of memory leaks in the GMCommand function in magick/command.c in GraphicsMagick 1.3.26 that will lead to a remote denial of service attack. | |
| Modificada | Media (6.5) | 1.4% | — | Graphicsmagick | 23/8/2017 | 17/6/2026 | In GraphicsMagick 1.3.26, a memory leak vulnerability was found in the function ReadMATImage in coders/mat.c. | |
| Modificada | Alta (8.8) | 1.5% | — | Graphicsmagick | 23/8/2017 | 17/6/2026 | In GraphicsMagick 1.3.26, an allocation failure vulnerability was found in the function ReadMNGImage in coders/png.c when a small MNG file has a MEND chunk with a large length value. | |
| Modificada | Media (6.5) | 1.4% | — | Graphicsmagick | 22/8/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a memory leak vulnerability in the function CloneImage in magick/image.c. | |
| Modificada | Media (6.5) | 1.7% | — | GraphicsmagickDebian Linux | 22/8/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a NULL pointer dereference vulnerability in the function SVGStartElement in coders/svg.c. | |
| Modificada | Media (6.5) | 2.3% | — | GraphicsmagickDebian Linux | 22/8/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a heap-based buffer overflow vulnerability in the function GetStyleTokens in coders/svg.c:311:12. | |
| Modificada | Media (6.5) | 1.8% | — | GraphicsmagickDebian Linux | 22/8/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a heap-based buffer overflow vulnerability in the function GetStyleTokens in coders/svg.c:314:12. |