CVE-2007-0770
published 2007-02-12CVE-2007-0770: Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a…
PriorityP432critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
5.36%
91.8th percentile
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
Affected
40 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | graphicsmagick | < graphicsmagick 1.2.3-1 (bookworm) | graphicsmagick 1.2.3-1 (bookworm) |
| debian | graphicsmagick | < graphicsmagick 1.1.7-12 (bookworm) | graphicsmagick 1.1.7-12 (bookworm) |
| debian | imagemagick | < graphicsmagick 1.1.7-12 (bookworm) | graphicsmagick 1.1.7-12 (bookworm) |
| graphicsmagick | graphicsmagick | <= 1.2.2 | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
| graphicsmagick | graphicsmagick | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
vendor_debian9.3CRITICAL
vendor_redhat9.3CRITICAL
vendor_ubuntu5.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2008-6070: graphicsmagick - Multiple heap-based buffer underflows in the ReadPALMImage function in coders/pa...
vendor_debian·2008·CVSS 9.3
CVE-2008-6070 [CRITICAL] CVE-2008-6070: graphicsmagick - Multiple heap-based buffer underflows in the ReadPALMImage function in coders/pa...
Multiple heap-based buffer underflows in the ReadPALMImage function in coders/palm.c in GraphicsMagick before 1.2.3 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted PALM image, a different vulnerability than CVE-2007-0770. NOTE: some of these details are obtained from third party information.
Scope: local
bookworm: resolved (fixed in 1.2.3-1)
bullseye: resolved (fixed in 1.2.3-1)
forky: resolved (fixed in 1.2.3-1)
sid: resolved (fixed in 1.2.3-1)
trixie: resolved (fixed in 1.2.3-1)
Red Hat
, CVE-2008-6071, CVE-2008-6072, CVE-2008-6621 multiple security issues in ImageMagick
vendor_redhat·2007-03-01·CVSS 9.3
CVE-2008-6070 [CRITICAL] , CVE-2008-6071, CVE-2008-6072, CVE-2008-6621 multiple security issues in ImageMagick
, CVE-2008-6071, CVE-2008-6072, CVE-2008-6621 multiple security issues in ImageMagick
Multiple heap-based buffer underflows in the ReadPALMImage function in coders/palm.c in GraphicsMagick before 1.2.3 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted PALM image, a different vulnerability than CVE-2007-0770. NOTE: some of these details are obtained from third party information.
Statement: The costs associated with fixing these bug are greater than the posed security risk. We therefore currently have no plans to fix this flaw in Red Hat Enterprise Linux at this time.
Ubuntu
ImageMagick vulnerabilities
vendor_ubuntu·2007-02-15·CVSS 5.1
CVE-2007-0770 [MEDIUM] ImageMagick vulnerabilities
Title: ImageMagick vulnerabilities
Summary: ImageMagick vulnerabilities
Vladimir Nadvornik discovered that the fix for CVE-2006-5456, released
in USN-372-1, did not correctly solve the original flaw in PALM image
handling. By tricking a user into processing a specially crafted image
with an application that uses imagemagick, an attacker could execute
arbitrary code with the user's privileges.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Debian
CVE-2007-0770: graphicsmagick - Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote at...
vendor_debian·2007·CVSS 5.1
CVE-2007-0770 [MEDIUM] CVE-2007-0770: graphicsmagick - Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote at...
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
Scope: local
bookworm: resolved (fixed in 1.1.7-12)
bullseye: resolved (fixed in 1.1.7-12)
forky: resolved (fixed in 1.1.7-12)
sid: resolved (fixed in 1.1.7-12)
trixie: resolved (fixed in 1.1.7-12)
Red Hat
CVE-2007-0770: GraphicsMagick buffer overflow
vendor_redhat·CVSS 5.1
CVE-2007-0770 [MEDIUM] CVE-2007-0770: GraphicsMagick buffer overflow
CVE-2007-0770: GraphicsMagick buffer overflow
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
Statement: Not vulnerable. Red Hat did not ship the incomplete patch for CVE-2006-5456 and is therefore not affected by this issue.
GHSA
GHSA-vwj5-vw48-r26j: Multiple heap-based buffer underflows in the ReadPALMImage function in coders/palm
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2008-6070 [CRITICAL] CWE-119 GHSA-vwj5-vw48-r26j: Multiple heap-based buffer underflows in the ReadPALMImage function in coders/palm
Multiple heap-based buffer underflows in the ReadPALMImage function in coders/palm.c in GraphicsMagick before 1.2.3 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted PALM image, a different vulnerability than CVE-2007-0770. NOTE: some of these details are obtained from third party information.
GHSA
GHSA-94w9-jj9w-mx3v: Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary co
ghsa_unreviewed·2022-05-01·CVSS 5.1
CVE-2007-0770 [MEDIUM] GHSA-94w9-jj9w-mx3v: Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary co
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
OSV
CVE-2008-6070: Multiple heap-based buffer underflows in the ReadPALMImage function in coders/palm
osv·2009-02-10·CVSS 9.3
CVE-2008-6070 [CRITICAL] CVE-2008-6070: Multiple heap-based buffer underflows in the ReadPALMImage function in coders/palm
Multiple heap-based buffer underflows in the ReadPALMImage function in coders/palm.c in GraphicsMagick before 1.2.3 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted PALM image, a different vulnerability than CVE-2007-0770. NOTE: some of these details are obtained from third party information.
OSV
CVE-2007-0770: Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary co
osv·2007-02-12·CVSS 5.1
CVE-2007-0770 [MEDIUM] CVE-2007-0770: Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary co
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2007-0770: GraphicsMagick buffer overflow
bugzilla·2007-02-14·CVSS 5.1
CVE-2007-0770 [MEDIUM] CVE-2007-0770: GraphicsMagick buffer overflow
CVE-2007-0770: GraphicsMagick buffer overflow
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-0770
"Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote
attackers to cause a denial of service and possibly execute arbitrary code via a
PALM image that is not properly handled by the ReadPALMImage function in
coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456."
CVE-2006-5456 says that it is an issue with < 1.1.7, but the discussion in bug
210921 refers to a post-1.1.7 GraphicsMagick, so whether this affects the FE
GraphicsMagick package should be investigated.
Discussion:
I'm still not completely sure if this issue is actually exploitable in
GraphicsMagick, as the handling is a tad different then with ImageMagick, but I
adapted the ImageM
Bugzilla
CVE-2006-5456 Overflows in GraphicsMagick and ImageMagick's DCM and PALM handling routines
bugzilla·2006-10-16·CVSS 5.1
CVE-2006-5456 [MEDIUM] CVE-2006-5456 Overflows in GraphicsMagick and ImageMagick's DCM and PALM handling routines
CVE-2006-5456 Overflows in GraphicsMagick and ImageMagick's DCM and PALM handling routines
Description of problem:
M. Joonas Pihlaja discovered security flaws in GraphicsMagick that also affect
ImageMagick -- one possible buffer overflow in coders/dcm.c:ReadDCMImage() and
three possible heap overflows in
coders/palm.c:ReadPALMImage(). Debian project includes a fix for GraphicsMagick
1.1.7 among other changes in their patch.
Version-Release number of selected component (if applicable):
How reproducible:
Potentially exploitable by maliciously crafted image.
Fix:
I attach the relevant part of the debian patch. It doesn't apply against
ImageMagick without modifications, because GraphicMagics project uses different
coding style. The patch needs to be reviewed and eventually needs to be re
http://secunia.com/advisories/24167http://secunia.com/advisories/24196http://www.debian.org/security/2007/dsa-1260http://www.mandriva.com/security/advisories?name=MDKSA-2007:041http://www.novell.com/linux/security/advisories/2007_3_sr.htmlhttp://www.osvdb.org/31911http://www.securityfocus.com/archive/1/459507/100/0/threadedhttp://www.ubuntu.com/usn/usn-422-1https://issues.rpath.com/browse/RPL-1034http://secunia.com/advisories/24167http://secunia.com/advisories/24196http://www.debian.org/security/2007/dsa-1260http://www.mandriva.com/security/advisories?name=MDKSA-2007:041http://www.novell.com/linux/security/advisories/2007_3_sr.htmlhttp://www.osvdb.org/31911http://www.securityfocus.com/archive/1/459507/100/0/threadedhttp://www.ubuntu.com/usn/usn-422-1https://issues.rpath.com/browse/RPL-1034
2007-02-12
Published