Multiple unspecified vulnerabilities in GraphicsMagick before 1.2.4 allow remote attackers to cause a denial of service (crash, infinite loop, or memory consumption) via (a) unspecified vectors in the (1) AVI, (2) AVS, (3) DCM, (4) EPT, (5) FITS, (6) MTV, (7) PALM, (8) RLA, and (9) TGA decoder readers; and (b) the GetImageCharacteristics function in magick/image.c, as reachable from a crafted (10) PNG, (11) JPEG, (12) BMP, or (13) TIFF file.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:48
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.opensuse.org/opensuse-security-announce/2008-10/msg00004.html - | |
References | () http://secunia.com/advisories/30879 - Vendor Advisory | |
References | () http://secunia.com/advisories/32151 - | |
References | () http://sourceforge.net/forum/forum.php?forum_id=841176 - | |
References | () http://sourceforge.net/project/shownotes.php?release_id=610253 - | |
References | () http://www.securityfocus.com/bid/30055 - | |
References | () http://www.securitytracker.com/id?1020413 - | |
References | () http://www.vupen.com/english/advisories/2008/1984/references - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/43511 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/43513 - |
Information
Published : 2008-07-10 23:41
Updated : 2024-11-21 00:48
NVD link : CVE-2008-3134
Mitre link : CVE-2008-3134
CVE.ORG link : CVE-2008-3134
JSON object : View
Products Affected
graphicsmagick
- graphicsmagick
CWE
CWE-399
Resource Management Errors