CVE-2006-5456
published 2006-10-23CVE-2006-5456: Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 allow user-assisted attackers to cause a denial of service and possibly execute…
PriorityP424medium5.1CVSS 2.0
AVNACHAuNCPIPAP
EPSS
3.57%
88.2th percentile
Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 allow user-assisted attackers to cause a denial of service and possibly execute arbitrary code via (1) a DCM image that is not properly handled by the ReadDCMImage function in coders/dcm.c, or (2) a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c.
Affected
29 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | graphicsmagick | < graphicsmagick 1.1.7-9 (bookworm) | graphicsmagick 1.1.7-9 (bookworm) |
| debian | graphicsmagick | < graphicsmagick 1.1.7-12 (bookworm) | graphicsmagick 1.1.7-12 (bookworm) |
| debian | imagemagick | < graphicsmagick 1.1.7-9 (bookworm) | graphicsmagick 1.1.7-9 (bookworm) |
| debian | imagemagick | < graphicsmagick 1.1.7-12 (bookworm) | graphicsmagick 1.1.7-12 (bookworm) |
| graphicsmagick | graphicsmagick | <= 1.1.6 | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | >= 0 < 1.1.7-9 | 1.1.7-9 |
| graphicsmagick | graphicsmagick | >= 0 < 1.1.7-12 | 1.1.7-12 |
| graphicsmagick | graphicsmagick | >= 0 < 1.1.7-9 | 1.1.7-9 |
| graphicsmagick | graphicsmagick | >= 0 < 1.1.7-12 | 1.1.7-12 |
| graphicsmagick | graphicsmagick | >= 0 < 1.1.7-9 | 1.1.7-9 |
| graphicsmagick | graphicsmagick | >= 0 < 1.1.7-12 | 1.1.7-12 |
| graphicsmagick | graphicsmagick | >= 0 < 1.1.7-9 | 1.1.7-9 |
| graphicsmagick | graphicsmagick | >= 0 < 1.1.7-12 | 1.1.7-12 |
| imagemagick | imagemagick | — | — |
| imagemagick | imagemagick | — | — |
| imagemagick | imagemagick | >= 0 < 7:6.2.4.5.dfsg1-0.11 | 7:6.2.4.5.dfsg1-0.11 |
| imagemagick | imagemagick | >= 0 < 7:6.2.4.5.dfsg1-0.14 | 7:6.2.4.5.dfsg1-0.14 |
| imagemagick | imagemagick | >= 0 < 7:6.2.4.5.dfsg1-0.11 | 7:6.2.4.5.dfsg1-0.11 |
| imagemagick | imagemagick | >= 0 < 7:6.2.4.5.dfsg1-0.14 | 7:6.2.4.5.dfsg1-0.14 |
CVSS provenance
nvdv2.05.1MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
osv5.1MEDIUM
vendor_debian5.1MEDIUM
vendor_redhat5.1MEDIUM
vendor_ubuntu5.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-cfvq-2qp7-r72f: Multiple buffer overflows in GraphicsMagick before 1
ghsa_unreviewed·2022-05-03
CVE-2006-5456 [MEDIUM] CWE-119 GHSA-cfvq-2qp7-r72f: Multiple buffer overflows in GraphicsMagick before 1
Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 allow user-assisted attackers to cause a denial of service and possibly execute arbitrary code via (1) a DCM image that is not properly handled by the ReadDCMImage function in coders/dcm.c, or (2) a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c.
GHSA
GHSA-94w9-jj9w-mx3v: Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary co
ghsa_unreviewed·2022-05-01·CVSS 5.1
CVE-2007-0770 [MEDIUM] GHSA-94w9-jj9w-mx3v: Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary co
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
OSV
CVE-2007-0770: Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary co
osv·2007-02-12·CVSS 5.1
CVE-2007-0770 [MEDIUM] CVE-2007-0770: Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary co
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
OSV
CVE-2006-5456: Multiple buffer overflows in GraphicsMagick before 1
osv·2006-10-23·CVSS 5.1
CVE-2006-5456 [MEDIUM] CVE-2006-5456: Multiple buffer overflows in GraphicsMagick before 1
Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 allow user-assisted attackers to cause a denial of service and possibly execute arbitrary code via (1) a DCM image that is not properly handled by the ReadDCMImage function in coders/dcm.c, or (2) a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c.
Ubuntu
ImageMagick vulnerabilities
vendor_ubuntu·2007-02-15·CVSS 5.1
CVE-2007-0770 [MEDIUM] ImageMagick vulnerabilities
Title: ImageMagick vulnerabilities
Summary: ImageMagick vulnerabilities
Vladimir Nadvornik discovered that the fix for CVE-2006-5456, released
in USN-372-1, did not correctly solve the original flaw in PALM image
handling. By tricking a user into processing a specially crafted image
with an application that uses imagemagick, an attacker could execute
arbitrary code with the user's privileges.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Debian
CVE-2007-0770: graphicsmagick - Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote at...
vendor_debian·2007·CVSS 5.1
CVE-2007-0770 [MEDIUM] CVE-2007-0770: graphicsmagick - Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote at...
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
Scope: local
bookworm: resolved (fixed in 1.1.7-12)
bullseye: resolved (fixed in 1.1.7-12)
forky: resolved (fixed in 1.1.7-12)
sid: resolved (fixed in 1.1.7-12)
trixie: resolved (fixed in 1.1.7-12)
Ubuntu
imagemagick vulnerability
vendor_ubuntu·2006-11-01
CVE-2006-5456 imagemagick vulnerability
Title: imagemagick vulnerability
Summary: imagemagick vulnerability
M. Joonas Pihlaja discovered that ImageMagick did not sufficiently
verify the validity of PALM and DCM images. When processing a
specially crafted image with an application that uses imagemagick,
this could be exploited to execute arbitrary code with the
application's privileges.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Red Hat
Overflows in GraphicsMagick and ImageMagick's DCM and PALM handling routines
vendor_redhat·2006-09-29·CVSS 5.1
CVE-2006-5456 [MEDIUM] Overflows in GraphicsMagick and ImageMagick's DCM and PALM handling routines
Overflows in GraphicsMagick and ImageMagick's DCM and PALM handling routines
Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 allow user-assisted attackers to cause a denial of service and possibly execute arbitrary code via (1) a DCM image that is not properly handled by the ReadDCMImage function in coders/dcm.c, or (2) a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c.
Statement: Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.
Debian
CVE-2006-5456: graphicsmagick - Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 a...
vendor_debian·2006·CVSS 5.1
CVE-2006-5456 [MEDIUM] CVE-2006-5456: graphicsmagick - Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 a...
Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 allow user-assisted attackers to cause a denial of service and possibly execute arbitrary code via (1) a DCM image that is not properly handled by the ReadDCMImage function in coders/dcm.c, or (2) a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c.
Scope: local
bookworm: resolved (fixed in 1.1.7-9)
bullseye: resolved (fixed in 1.1.7-9)
forky: resolved (fixed in 1.1.7-9)
sid: resolved (fixed in 1.1.7-9)
trixie: resolved (fixed in 1.1.7-9)
Red Hat
CVE-2007-0770: GraphicsMagick buffer overflow
vendor_redhat·CVSS 5.1
CVE-2007-0770 [MEDIUM] CVE-2007-0770: GraphicsMagick buffer overflow
CVE-2007-0770: GraphicsMagick buffer overflow
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
Statement: Not vulnerable. Red Hat did not ship the incomplete patch for CVE-2006-5456 and is therefore not affected by this issue.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2007-0770: GraphicsMagick buffer overflow
bugzilla·2007-02-14·CVSS 5.1
CVE-2007-0770 [MEDIUM] CVE-2007-0770: GraphicsMagick buffer overflow
CVE-2007-0770: GraphicsMagick buffer overflow
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-0770
"Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote
attackers to cause a denial of service and possibly execute arbitrary code via a
PALM image that is not properly handled by the ReadPALMImage function in
coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456."
CVE-2006-5456 says that it is an issue with < 1.1.7, but the discussion in bug
210921 refers to a post-1.1.7 GraphicsMagick, so whether this affects the FE
GraphicsMagick package should be investigated.
Discussion:
I'm still not completely sure if this issue is actually exploitable in
GraphicsMagick, as the handling is a tad different then with ImageMagick, but I
adapted the ImageM
Bugzilla
CVE-2006-5456 Overflows in GraphicsMagick and ImageMagick's DCM and PALM handling routines
bugzilla·2006-10-16·CVSS 5.1
CVE-2006-5456 [MEDIUM] CVE-2006-5456 Overflows in GraphicsMagick and ImageMagick's DCM and PALM handling routines
CVE-2006-5456 Overflows in GraphicsMagick and ImageMagick's DCM and PALM handling routines
Description of problem:
M. Joonas Pihlaja discovered security flaws in GraphicsMagick that also affect
ImageMagick -- one possible buffer overflow in coders/dcm.c:ReadDCMImage() and
three possible heap overflows in
coders/palm.c:ReadPALMImage(). Debian project includes a fix for GraphicsMagick
1.1.7 among other changes in their patch.
Version-Release number of selected component (if applicable):
How reproducible:
Potentially exploitable by maliciously crafted image.
Fix:
I attach the relevant part of the debian patch. It doesn't apply against
ImageMagick without modifications, because GraphicMagics project uses different
coding style. The patch needs to be reviewed and eventually needs to be re
ftp://patches.sgi.com/support/free/security/advisories/20070201-01-P.aschttp://packages.debian.org/changelogs/pool/main/g/graphicsmagick/graphicsmagick_1.1.7-9/changelog#versionversion1.1.7-9http://secunia.com/advisories/22569http://secunia.com/advisories/22572http://secunia.com/advisories/22601http://secunia.com/advisories/22604http://secunia.com/advisories/22819http://secunia.com/advisories/22834http://secunia.com/advisories/22998http://secunia.com/advisories/23090http://secunia.com/advisories/23121http://secunia.com/advisories/24186http://secunia.com/advisories/24196http://secunia.com/advisories/24284http://secunia.com/advisories/24458http://security.gentoo.org/glsa/glsa-200611-07.xmlhttp://security.gentoo.org/glsa/glsa-200611-19.xmlhttp://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.352092http://www.debian.org/security/2006/dsa-1213http://www.mandriva.com/security/advisories?name=MDKSA-2006:193http://www.mandriva.com/security/advisories?name=MDKSA-2007:041http://www.novell.com/linux/security/advisories/2006_66_imagemagick.htmlhttp://www.novell.com/linux/security/advisories/2007_3_sr.htmlhttp://www.osvdb.org/29990http://www.redhat.com/support/errata/RHSA-2007-0015.htmlhttp://www.securityfocus.com/archive/1/452718/100/100/threadedhttp://www.securityfocus.com/archive/1/459507/100/0/threadedhttp://www.securityfocus.com/bid/20707http://www.ubuntu.com/usn/usn-372-1http://www.ubuntu.com/usn/usn-422-1http://www.vupen.com/english/advisories/2006/4170http://www.vupen.com/english/advisories/2006/4171https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=210921https://exchange.xforce.ibmcloud.com/vulnerabilities/29816https://issues.rpath.com/browse/RPL-1034https://issues.rpath.com/browse/RPL-811https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9765ftp://patches.sgi.com/support/free/security/advisories/20070201-01-P.aschttp://packages.debian.org/changelogs/pool/main/g/graphicsmagick/graphicsmagick_1.1.7-9/changelog#versionversion1.1.7-9http://secunia.com/advisories/22569http://secunia.com/advisories/22572http://secunia.com/advisories/22601http://secunia.com/advisories/22604http://secunia.com/advisories/22819http://secunia.com/advisories/22834http://secunia.com/advisories/22998http://secunia.com/advisories/23090http://secunia.com/advisories/23121http://secunia.com/advisories/24186http://secunia.com/advisories/24196http://secunia.com/advisories/24284http://secunia.com/advisories/24458http://security.gentoo.org/glsa/glsa-200611-07.xmlhttp://security.gentoo.org/glsa/glsa-200611-19.xmlhttp://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.352092http://www.debian.org/security/2006/dsa-1213http://www.mandriva.com/security/advisories?name=MDKSA-2006:193http://www.mandriva.com/security/advisories?name=MDKSA-2007:041http://www.novell.com/linux/security/advisories/2006_66_imagemagick.htmlhttp://www.novell.com/linux/security/advisories/2007_3_sr.htmlhttp://www.osvdb.org/29990http://www.redhat.com/support/errata/RHSA-2007-0015.htmlhttp://www.securityfocus.com/archive/1/452718/100/100/threadedhttp://www.securityfocus.com/archive/1/459507/100/0/threadedhttp://www.securityfocus.com/bid/20707http://www.ubuntu.com/usn/usn-372-1http://www.ubuntu.com/usn/usn-422-1http://www.vupen.com/english/advisories/2006/4170http://www.vupen.com/english/advisories/2006/4171https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=210921https://exchange.xforce.ibmcloud.com/vulnerabilities/29816https://issues.rpath.com/browse/RPL-1034https://issues.rpath.com/browse/RPL-811https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9765
2006-10-23
Published