CVE-2006-5868
published 2006-11-22CVE-2006-5868: Multiple buffer overflows in Imagemagick 6.0 before 6.0.6.2, and 6.2 before 6.2.4.5, has unknown impact and user-assisted attack vectors via a crafted SGI…
PriorityP429critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
2.65%
84.1th percentile
Multiple buffer overflows in Imagemagick 6.0 before 6.0.6.2, and 6.2 before 6.2.4.5, has unknown impact and user-assisted attack vectors via a crafted SGI image.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | imagemagick | < imagemagick 7:6.2.4.5.dfsg1-0.11 (bookworm) | imagemagick 7:6.2.4.5.dfsg1-0.11 (bookworm) |
| imagemagick | imagemagick | >= 0 < 7:6.2.4.5.dfsg1-0.11 | 7:6.2.4.5.dfsg1-0.11 |
| imagemagick | imagemagick | >= 0 < 7:6.2.4.5.dfsg1-0.11 | 7:6.2.4.5.dfsg1-0.11 |
| imagemagick | imagemagick | >= 0 < 7:6.2.4.5.dfsg1-0.11 | 7:6.2.4.5.dfsg1-0.11 |
| imagemagick | imagemagick | >= 0 < 7:6.2.4.5.dfsg1-0.11 | 7:6.2.4.5.dfsg1-0.11 |
| imagemagick | imagemagick | >= 6.0 < 6.0.6.2 | 6.0.6.2 |
| imagemagick | imagemagick | >= 6.2 < 6.2.4.5 | 6.2.4.5 |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
vendor_debian9.3CRITICAL
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
ImageMagick vulnerability
vendor_ubuntu·2006-11-28
CVE-2006-5868 ImageMagick vulnerability
Title: ImageMagick vulnerability
Summary: ImageMagick vulnerability
Daniel Kobras discovered multiple buffer overflows in ImageMagick's SGI
file format decoder. By tricking a user or an automated system into
processing a specially crafted SGI image, this could be exploited to
execute arbitrary code with the user's privileges.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Red Hat
Insufficient boundary check in ImageMagick's SGIDecode()
vendor_redhat·2006-09-29·CVSS 9.3
CVE-2006-5868 [CRITICAL] Insufficient boundary check in ImageMagick's SGIDecode()
Insufficient boundary check in ImageMagick's SGIDecode()
Multiple buffer overflows in Imagemagick 6.0 before 6.0.6.2, and 6.2 before 6.2.4.5, has unknown impact and user-assisted attack vectors via a crafted SGI image.
Statement: Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.
Debian
CVE-2006-5868: imagemagick - Multiple buffer overflows in Imagemagick 6.0 before 6.0.6.2, and 6.2 before 6.2....
vendor_debian·2006·CVSS 9.3
CVE-2006-5868 [CRITICAL] CVE-2006-5868: imagemagick - Multiple buffer overflows in Imagemagick 6.0 before 6.0.6.2, and 6.2 before 6.2....
Multiple buffer overflows in Imagemagick 6.0 before 6.0.6.2, and 6.2 before 6.2.4.5, has unknown impact and user-assisted attack vectors via a crafted SGI image.
Scope: local
bookworm: resolved (fixed in 7:6.2.4.5.dfsg1-0.11)
bullseye: resolved (fixed in 7:6.2.4.5.dfsg1-0.11)
forky: resolved (fixed in 7:6.2.4.5.dfsg1-0.11)
sid: resolved (fixed in 7:6.2.4.5.dfsg1-0.11)
trixie: resolved (fixed in 7:6.2.4.5.dfsg1-0.11)
VulDB
Imagemagick up to 6.2.3.6 memory corruption (Nessus ID 23758 / ID 156179)
vuldb·2026-04-28·CVSS 9.3
CVE-2006-5868 [CRITICAL] Imagemagick up to 6.2.3.6 memory corruption (Nessus ID 23758 / ID 156179)
A vulnerability classified as critical was found in Imagemagick up to 6.2.3.6. Impacted is an unknown function. The manipulation results in memory corruption.
This vulnerability is known as CVE-2006-5868. It is possible to launch the attack remotely. Furthermore, an exploit is available.
Upgrading the affected component is advised.
GHSA
GHSA-rq9g-h4j2-r538: Multiple buffer overflows in Imagemagick 6
ghsa_unreviewed·2022-05-03
CVE-2006-5868 [HIGH] GHSA-rq9g-h4j2-r538: Multiple buffer overflows in Imagemagick 6
Multiple buffer overflows in Imagemagick 6.0 before 6.0.6.2, and 6.2 before 6.2.4.5, has unknown impact and user-assisted attack vectors via a crafted SGI image.
OSV
CVE-2006-5868: Multiple buffer overflows in Imagemagick 6
osv·2006-11-22·CVSS 9.3
CVE-2006-5868 [CRITICAL] CVE-2006-5868: Multiple buffer overflows in Imagemagick 6
Multiple buffer overflows in Imagemagick 6.0 before 6.0.6.2, and 6.2 before 6.2.4.5, has unknown impact and user-assisted attack vectors via a crafted SGI image.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2006-5868 Insufficient boundary check in ImageMagick's SGIDecode()
bugzilla·2006-11-28·CVSS 9.3
CVE-2006-5868 [CRITICAL] CVE-2006-5868 Insufficient boundary check in ImageMagick's SGIDecode()
CVE-2006-5868 Insufficient boundary check in ImageMagick's SGIDecode()
+++ This bug was initially created as a clone of Bug #217558 +++
Description of problem:
Debian team issued an ImageMagick update DSA-1213-1 where they reportedly fixed
an issue in SGI image handling routine.
See their Changelog entry:
* Fix insufficient boundary checks in SGIDecode() (discovered by Daniel
Kobras)
And excerpt from their advisory:
Daniel Kobras discovered that Imagemagick is vulnerable to buffer
overflows in the module for SGI images.
Version-Release number of selected component (if applicable):
RHEL2.1-RHEL4, FC5, FC6
Additional info:
I attach relevant part of the debian patch. Please have a look at it.
-- Additional comment from [email protected] on 2006-11-28 11:57 EST --
Created an attachm
Bugzilla
CVE-2006-5868 Insufficient boundary check in ImageMagick's SGIDecode()
bugzilla·2006-11-28·CVSS 9.3
CVE-2006-5868 [CRITICAL] CVE-2006-5868 Insufficient boundary check in ImageMagick's SGIDecode()
CVE-2006-5868 Insufficient boundary check in ImageMagick's SGIDecode()
Description of problem:
Debian team issued an ImageMagick update DSA-1213-1 where they reportedly fixed
an issue in SGI image handling routine.
See their Changelog entry:
* Fix insufficient boundary checks in SGIDecode() (discovered by Daniel
Kobras)
And excerpt from their advisory:
Daniel Kobras discovered that Imagemagick is vulnerable to buffer
overflows in the module for SGI images.
Version-Release number of selected component (if applicable):
RHEL2.1-RHEL4, FC5, FC6
Additional info:
I attach relevant part of the debian patch. Please have a look at it.
Discussion:
Created attachment 142305
Part that fixes CVE-2006-5868 issue, from debian
---
For the second hunk in this I think the for loop should be initi
ftp://patches.sgi.com/support/free/security/advisories/20070201-01-P.aschttp://secunia.com/advisories/22998http://secunia.com/advisories/23101http://secunia.com/advisories/23219http://secunia.com/advisories/24186http://secunia.com/advisories/24284http://www.debian.org/security/2006/dsa-1213http://www.mandriva.com/security/advisories?name=MDKSA-2006:223http://www.redhat.com/support/errata/RHSA-2007-0015.htmlhttp://www.securityfocus.com/bid/21185http://www.ubuntu.com/usn/usn-386-1https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10612ftp://patches.sgi.com/support/free/security/advisories/20070201-01-P.aschttp://secunia.com/advisories/22998http://secunia.com/advisories/23101http://secunia.com/advisories/23219http://secunia.com/advisories/24186http://secunia.com/advisories/24284http://www.debian.org/security/2006/dsa-1213http://www.mandriva.com/security/advisories?name=MDKSA-2006:223http://www.redhat.com/support/errata/RHSA-2007-0015.htmlhttp://www.securityfocus.com/bid/21185http://www.ubuntu.com/usn/usn-386-1https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10612
2006-11-22
Published