cbcvebase.
CVE-2015-8896
published 2017-03-15

CVE-2015-8896: Integer truncation issue in coders/pict.c in ImageMagick before 7.0.5-0 allows remote attackers to cause a denial of service (application crash) via a crafted…

medium6.5CVSS 3.1
AVNACLPRNUIRSUCNINAH
Integer truncation issue in coders/pict.c in ImageMagick before 7.0.5-0 allows remote attackers to cause a denial of service (application crash) via a crafted .pict file.

Affected

30 ranges· showing 25
VendorProductVersion rangeFixed in
debianimagemagick< imagemagick 8:6.8.9.9-7 (bookworm)imagemagick 8:6.8.9.9-7 (bookworm)
imagemagickimagemagick< 6.9.4-06.9.4-0
imagemagickimagemagick>= 0 < 8:6.8.9.9-78:6.8.9.9-7
imagemagickimagemagick>= 0 < 8:6.8.9.9-78:6.8.9.9-7
imagemagickimagemagick>= 0 < 8:6.8.9.9-78:6.8.9.9-7
imagemagickimagemagick>= 0 < 8:6.8.9.9-78:6.8.9.9-7
imagemagickimagemagick>= 7.0.0-0 < 7.0.5-07.0.5-0
oraclelinux
oraclelinux
redhatenterprise_linux_desktop
redhatenterprise_linux_desktop
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_eus
redhatenterprise_linux_server
redhatenterprise_linux_server
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_aus
redhatenterprise_linux_server_tus

CVSS provenance

nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
osv6.5MEDIUM