Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▼ 449 respecto a la semana anterior
Críticas / altas1325▼ 128 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)268▼ 240 respecto a la semana anterior
125 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.8) | 2.3% | — | GraphicsmagickDebian Linux | 18/8/2017 | 17/6/2026 | The ReadSUNImage function in coders/sun.c in GraphicsMagick 1.3.26 has a colormap heap-based buffer over-read. | |
| Modificada | Alta (8.8) | 25% | — | GraphicsmagickDebian Linux | 18/8/2017 | 17/6/2026 | The ReadWMFImage function in coders/wmf.c in GraphicsMagick 1.3.26 has a use-after-free issue for data associated with exception reporting. | |
| Modificada | Alta (8.8) | 1.9% | — | GraphicsmagickDebian Linux | 18/8/2017 | 17/6/2026 | The ReadMNGImage function in coders/png.c in GraphicsMagick 1.3.26 mishandles large MNG images, leading to an invalid memory read in the SetImageColorCallBack function in magick/image.c. | |
| Modificada | Media (6.5) | 1.8% | — | Graphicsmagick | 28/7/2017 | 17/6/2026 | The WriteOnePNGImage function in coders/png.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted file, because the program's actual control flow was inconsistent with its indentation. This resulted in a logging statement executing… | |
| Modificada | Crítica (9.8) | 2.2% | — | Graphicsmagick | 26/7/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a heap overflow in the WriteCMYKImage() function in coders/cmyk.c when processing multiple frames that have non-identical widths. | |
| Modificada | Alta (8.8) | 1.8% | — | Graphicsmagick | 26/7/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a NULL pointer dereference in the WriteMAPImage() function in coders/map.c when processing a non-colormapped image, a different vulnerability than CVE-2017-11638. | |
| Modificada | Crítica (9.8) | 2.0% | — | Graphicsmagick | 26/7/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a Memory Leak in the PersistCache function in magick/pixel_cache.c during writing of Magick Persistent Cache (MPC) files. | |
| Modificada | Alta (8.8) | 1.7% | — | Graphicsmagick | 26/7/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a segmentation violation in the WriteMAPImage() function in coders/map.c when processing a non-colormapped image, a different vulnerability than CVE-2017-11642. | |
| Modificada | Crítica (9.8) | 2.1% | — | Graphicsmagick | 26/7/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a NULL pointer dereference in the WritePCLImage() function in coders/pcl.c during writes of monochrome images. | |
| Modificada | Crítica (9.8) | 3.1% | — | Graphicsmagick | 26/7/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has a heap overflow in the WriteRGBImage() function in coders/rgb.c when processing multiple frames that have non-identical widths. | |
| Modificada | Alta (8.8) | 28% | — | Graphicsmagick | 18/7/2017 | 17/6/2026 | The ReadMNGImage function in coders/png.c in GraphicsMagick 1.3.26 has an out-of-order CloseBlob call, resulting in a use-after-free via a crafted file. | |
| Modificada | Media (5.5) | 1.8% | — | Graphicsmagick | 10/7/2017 | 17/6/2026 | The ReadJPEGImage function in coders/jpeg.c in GraphicsMagick 1.3.26 creates a pixel cache before a successful read of a scanline, which allows remote attackers to cause a denial of service (resource consumption) via crafted JPEG files. | |
| Modificada | Crítica (9.8) | 2.7% | — | GraphicsmagickDebian Linux | 10/7/2017 | 17/6/2026 | GraphicsMagick 1.3.26 has double free vulnerabilities in the ReadOneJNGImage() function in coders/png.c. | |
| Modificada | Alta (7.5) | 3.3% | — | Graphicsmagick | 7/7/2017 | 17/6/2026 | The ReadOneJNGImage function in coders/png.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (application crash) during JNG reading via a zero-length color_image data structure. | |
| Modificada | Media (5.5) | 1.2% | — | Graphicsmagick | 3/7/2017 | 17/6/2026 | When GraphicsMagick 1.3.25 processes a MATLAB image in coders/mat.c, it can lead to a denial of service (OOM) in ReadMATImage() if the size specified for a MAT Object is larger than the actual amount of data. | |
| Modificada | Media (5.5) | 1.3% | — | Graphicsmagick | 3/7/2017 | 17/6/2026 | When GraphicsMagick 1.3.25 processes a DPX image (with metadata indicating a large width) in coders/dpx.c, a denial of service (OOM) can occur in ReadDPXImage(). | |
| Modificada | Media (5.5) | 1.5% | — | Graphicsmagick | 2/7/2017 | 17/6/2026 | When GraphicsMagick 1.3.25 processes an RGB TIFF picture (with metadata indicating a single sample per pixel) in coders/tiff.c, a buffer overflow occurs, related to QuantumTransferMode. | |
| Modificada | Alta (7.5) | 3.6% | — | ImagemagickGraphicsmagickDebian Linux | 19/5/2017 | 17/6/2026 | ImageMagick before 7.0.5-2 and GraphicsMagick before 1.3.24 use uninitialized memory in the RLE decoder, allowing an attacker to leak sensitive information from process memory space, as demonstrated by remote attacks against ImageMagick code in a long-running server process that converts image data on behalf of… | |
| Modificada | Media (5.5) | 1.9% | — | Graphicsmagick | 14/3/2017 | 17/6/2026 | The QuantumTransferMode function in coders/tiff.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a small samples per pixel value in a CMYKA TIFF file. | |
| Modificada | Media (5.5) | 1.7% | — | GraphicsmagickDebian LinuxOpensuse LeapOpensuse | 1/3/2017 | 17/6/2026 | The MagickRealloc function in memory.c in Graphicsmagick 1.3.25 allows remote attackers to cause a denial of service (crash) via large dimensions in a jpeg image. | |
| Modificada | Media (5.5) | 2.2% | — | Graphicsmagick | 27/2/2017 | 17/6/2026 | The DrawDashPolygon function in magick/render.c in GraphicsMagick before 1.3.24 and the SVG renderer in ImageMagick allow remote attackers to cause a denial of service (infinite loop) by converting a circularly defined SVG file. | |
| Modificada | Alta (7.8) | 2.2% | — | GraphicsmagickOpensuseDebian Linux | 15/2/2017 | 17/6/2026 | The MagickMalloc function in magick/memory.c in GraphicsMagick 1.3.25 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure and a "file truncation error for corrupt file." | |
| Modificada | Alta (7.8) | 1.8% | — | GraphicsmagickOpensuseDebian Linux | 15/2/2017 | 17/6/2026 | The ReadPCXImage function in coders/pcx.c in GraphicsMagick 1.3.25 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure and a "file truncation error for corrupt file." | |
| Modificada | Alta (7.5) | 3.5% | — | GraphicsmagickOpensuseDebian Linux | 15/2/2017 | 17/6/2026 | The ReadSCTImage function in coders/sct.c in GraphicsMagick 1.3.25 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted SCT header. | |
| Modificada | Alta (7.5) | 3.8% | — | GraphicsmagickOpensuse LeapOpensuseDebian Linux | 6/2/2017 | 17/6/2026 | Integer underflow in the parse8BIM function in coders/meta.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted 8BIM chunk, which triggers a heap-based buffer overflow. |