CVE-2019-1180
published 2019-08-14CVE-2019-1180: An elevation of privilege vulnerability exists in the way that the wcmsvc.dll handles objects in memory. An attacker who successfully exploited the…
PriorityP430high7CVSS 3.1
AVLACHPRLUINSUCHIHAH
EPSS
0.82%
53.0th percentile
An elevation of privilege vulnerability exists in the way that the wcmsvc.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions.
To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application.
The security update addresses the vulnerability by ensuring the wcmsvc.dll properly handles objects in memory.
Affected
39 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10 | — | — |
| microsoft | windows_10_version_1507 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1607 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1703 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1709 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1709_for_32-bit_systems | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1803 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1809 | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1903_for_32-bit_systems | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1903_for_arm64-based_systems | >= 10.0.0 < publication | publication |
| microsoft | windows_10_version_1903_for_x64-based_systems | >= 10.0.0 < publication | publication |
| microsoft | windows_8.1 | >= 6.3.0 < publication | publication |
| microsoft | windows_server_2012 | — | — |
| microsoft | windows_server_2012 | >= 6.2.0 < publication | publication |
| microsoft | windows_server_2012_r2 | >= 6.3.0 < publication | publication |
| microsoft | windows_server_2016 | — | — |
| microsoft | windows_server_2016 | — | — |
| microsoft | windows_server_2016 | >= 10.0.0 < publication | publication |
| microsoft | windows_server_2019 | >= 10.0.0 < publication | publication |
| msrc | windows_10 | — | — |
CVSS provenance
nvdv3.17.0HIGHCVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
vendor_msrc7.0HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-5xj6-qhjx-f6xh: An elevation of privilege vulnerability exists in the way that the wcmsvc
ghsa_unreviewed·2022-05-24·CVSS 7.0
CVE-2019-1180 [HIGH] GHSA-5xj6-qhjx-f6xh: An elevation of privilege vulnerability exists in the way that the wcmsvc
An elevation of privilege vulnerability exists in the way that the wcmsvc.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1173, CVE-2019-1174, CVE-2019-1175, CVE-2019-1177, CVE-2019-1178, CVE-2019-1179, CVE-2019-1184, CVE-2019-1186.
GHSA
GHSA-82mq-2jww-m58g: An elevation of privilege vulnerability exists in the way that the unistore
ghsa_unreviewed·2022-05-24·CVSS 7.0
CVE-2019-1179 [HIGH] GHSA-82mq-2jww-m58g: An elevation of privilege vulnerability exists in the way that the unistore
An elevation of privilege vulnerability exists in the way that the unistore.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1173, CVE-2019-1174, CVE-2019-1175, CVE-2019-1177, CVE-2019-1178, CVE-2019-1180, CVE-2019-1184, CVE-2019-1186.
GHSA
GHSA-f245-h455-7hqv: An elevation of privilege vulnerability exists in the way that the PsmServiceExtHost
ghsa_unreviewed·2022-05-24·CVSS 7.0
CVE-2019-1173 [HIGH] GHSA-f245-h455-7hqv: An elevation of privilege vulnerability exists in the way that the PsmServiceExtHost
An elevation of privilege vulnerability exists in the way that the PsmServiceExtHost.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1174, CVE-2019-1175, CVE-2019-1177, CVE-2019-1178, CVE-2019-1179, CVE-2019-1180, CVE-2019-1184, CVE-2019-1186.
GHSA
GHSA-vfjm-94qj-mfgw: An elevation of privilege vulnerability exists in the way that the ssdpsrv
ghsa_unreviewed·2022-05-24·CVSS 7.0
CVE-2019-1178 [HIGH] GHSA-vfjm-94qj-mfgw: An elevation of privilege vulnerability exists in the way that the ssdpsrv
An elevation of privilege vulnerability exists in the way that the ssdpsrv.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1173, CVE-2019-1174, CVE-2019-1175, CVE-2019-1177, CVE-2019-1179, CVE-2019-1180, CVE-2019-1184, CVE-2019-1186.
GHSA
GHSA-5fw3-2234-g822: An elevation of privilege vulnerability exists in the way that the psmsrv
ghsa_unreviewed·2022-05-24·CVSS 7.0
CVE-2019-1175 [HIGH] CWE-269 GHSA-5fw3-2234-g822: An elevation of privilege vulnerability exists in the way that the psmsrv
An elevation of privilege vulnerability exists in the way that the psmsrv.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1173, CVE-2019-1174, CVE-2019-1177, CVE-2019-1178, CVE-2019-1179, CVE-2019-1180, CVE-2019-1184, CVE-2019-1186.
GHSA
GHSA-xr5g-7pxf-gp8f: An elevation of privilege vulnerability exists in the way that the rpcss
ghsa_unreviewed·2022-05-24·CVSS 7.0
CVE-2019-1177 [HIGH] CWE-269 GHSA-xr5g-7pxf-gp8f: An elevation of privilege vulnerability exists in the way that the rpcss
An elevation of privilege vulnerability exists in the way that the rpcss.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1173, CVE-2019-1174, CVE-2019-1175, CVE-2019-1178, CVE-2019-1179, CVE-2019-1180, CVE-2019-1184, CVE-2019-1186.
GHSA
GHSA-hxfv-8253-2p76: An elevation of privilege vulnerability exists in the way that the wcmsvc
ghsa_unreviewed·2022-05-24·CVSS 7.0
CVE-2019-1186 [HIGH] GHSA-hxfv-8253-2p76: An elevation of privilege vulnerability exists in the way that the wcmsvc
An elevation of privilege vulnerability exists in the way that the wcmsvc.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1173, CVE-2019-1174, CVE-2019-1175, CVE-2019-1177, CVE-2019-1178, CVE-2019-1179, CVE-2019-1180, CVE-2019-1184.
GHSA
GHSA-24jg-p7g4-p8rm: An elevation of privilege vulnerability exists when Windows Core Shell COM Server Registrar improperly handles COM calls, aka 'Windows Elevation of Pr
ghsa_unreviewed·2022-05-24·CVSS 7.0
CVE-2019-1184 [HIGH] GHSA-24jg-p7g4-p8rm: An elevation of privilege vulnerability exists when Windows Core Shell COM Server Registrar improperly handles COM calls, aka 'Windows Elevation of Pr
An elevation of privilege vulnerability exists when Windows Core Shell COM Server Registrar improperly handles COM calls, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1173, CVE-2019-1174, CVE-2019-1175, CVE-2019-1177, CVE-2019-1178, CVE-2019-1179, CVE-2019-1180, CVE-2019-1186.
GHSA
GHSA-9qcm-3p54-9cgq: An elevation of privilege vulnerability exists in the way that the PsmServiceExtHost
ghsa_unreviewed·2022-05-24·CVSS 7.0
CVE-2019-1174 [HIGH] CWE-1257 GHSA-9qcm-3p54-9cgq: An elevation of privilege vulnerability exists in the way that the PsmServiceExtHost
An elevation of privilege vulnerability exists in the way that the PsmServiceExtHost.dll handles objects in memory, aka 'Windows Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2019-1173, CVE-2019-1175, CVE-2019-1177, CVE-2019-1178, CVE-2019-1179, CVE-2019-1180, CVE-2019-1184, CVE-2019-1186.
Microsoft
Windows Elevation of Privilege Vulnerability
vendor_msrc·2019-08-13·CVSS 7.0
CVE-2019-1180 [HIGH] Windows Elevation of Privilege Vulnerability
Windows Elevation of Privilege Vulnerability
Description: An elevation of privilege vulnerability exists in the way that the wcmsvc.dll handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions.
To exploit the vulnerability, a locally authenticated attacker could run a specially crafted application.
The security update addresses the vulnerability by ensuring the wcmsvc.dll properly handles objects in memory.
Microsoft Windows: Microsoft Windows
Microsoft: Microsoft
Impact: Elevation of Privilege
Exploit Status: Publicly Disclosed:No;Exploited:No;Latest Software Release:Exploitation Less Likely;Older Software Release:Exploitation Less Likely;DOS:N/A
Reference: https://catalog.update.microsoft.com/v7/site/Search.asp
No detection rules found.
No public exploits indexed.
Talos
Microsoft Patch Tuesday — Aug. 2019: Vulnerability disclosures and Snort coverage
blogs_talos·2019-08-13·CVSS 9.1
[CRITICAL] Microsoft Patch Tuesday — Aug. 2019: Vulnerability disclosures and Snort coverage
Microsoft released its monthly security update today, disclosing a variety of vulnerabilities in several of its products. The latest Patch Tuesday covers 97 vulnerabilities, 31 of which are rated “critical," 65 that are considered "important" and one "moderate."
This month’s security update covers security issues in a variety of Microsoft services and software, including certain graphics components, Outlook and the Chakra Scripting Engine. For more on our coverage of these bugs, check out our Snort advisories here, covering all of the new rules we have for this release.
### Critical vulnerabilities Microsoft disclosed 31 critical vulnerabilities this month, three of which we will highlight below.
CVE-2019-1181 and CVE-2019-1182 are both remote code execution vulnerabilities in Remote De
Talos
Microsoft Patch Tuesday — Aug. 2019: Vulnerability disclosures and Snort coverage
blogs_talos·2019-08-13·CVSS 9.8
[CRITICAL] Microsoft Patch Tuesday — Aug. 2019: Vulnerability disclosures and Snort coverage
## Microsoft Patch Tuesday — Aug. 2019: Vulnerability disclosures and Snort coverage
Microsoft released its monthly security update today, disclosing a variety of vulnerabilities in several of its products. The latest Patch Tuesday covers 97 vulnerabilities, 31 of which are rated “critical," 65 that are considered "important" and one "moderate."
This month’s security update covers security issues in a variety of Microsoft services and software, including certain graphics components, Outlook and the Chakra Scripting Engine. For more on our coverage of these bugs, check out our Snort advisories here , covering all of the new rules we have for this release.
## Critical vulnerabilities Microsoft disclosed 31 critical vulnerabilities this month, three of which we will highlight below.
CVE-2
Bugzilla
CVE-2019-16711 ImageMagick: memory leak in Huffman2DEncodeImage in coders/ps2.c
bugzilla·2020-02-11·CVSS 6.5
CVE-2019-16711 [MEDIUM] CVE-2019-16711 ImageMagick: memory leak in Huffman2DEncodeImage in coders/ps2.c
CVE-2019-16711 ImageMagick: memory leak in Huffman2DEncodeImage in coders/ps2.c
A vulnerability was found in ImageMagick 7.0.8-40 has a memory leak in Huffman2DEncodeImage in coders/ps2.c.
Reference:
https://github.com/ImageMagick/ImageMagick/issues/1542
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: epel-8 [bug 1801678]
Affects: fedora-all [bug 1801676]
---
Upstream patches:
https://github.com/ImageMagick/ImageMagick/commit/ba0e05ee5a983c202f1030c7901ed6b3ed7d652c
https://github.com/ImageMagick/ImageMagick6/commit/448f301a781405a45717bb53578475de06df973a
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug is now closed. Further updates fo
Bugzilla
CVE-2019-16712 ImageMagick: memory leak in Huffman2DEncodeImage in coders/ps3.c
bugzilla·2020-02-11·CVSS 6.5
CVE-2019-16712 [MEDIUM] CVE-2019-16712 ImageMagick: memory leak in Huffman2DEncodeImage in coders/ps3.c
CVE-2019-16712 ImageMagick: memory leak in Huffman2DEncodeImage in coders/ps3.c
A vulnerability was found in ImageMagick 7.0.8-43 has a memory leak in Huffman2DEncodeImage in coders/ps3.c, as demonstrated by WritePS3Image.
Reference:
https://github.com/ImageMagick/ImageMagick/issues/1557
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: epel-8 [bug 1801679]
Affects: fedora-all [bug 1801677]
---
Upstream patches:
https://github.com/ImageMagick/ImageMagick/commit/7b04c53c69792243d66d6876f843b850b3cc002b
https://github.com/ImageMagick/ImageMagick6/commit/451d0e4aadb17f16d15006aed379b71714d04a5d
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug
Bugzilla
CVE-2019-19948 ImageMagick: heap-based buffer overflow in WriteSGIImage in coders/sgi.c
bugzilla·2020-01-20·CVSS 9.8
CVE-2019-19948 [CRITICAL] CVE-2019-19948 ImageMagick: heap-based buffer overflow in WriteSGIImage in coders/sgi.c
CVE-2019-19948 ImageMagick: heap-based buffer overflow in WriteSGIImage in coders/sgi.c
In ImageMagick 7.0.8-43 Q16, there is a heap-based buffer overflow in the function WriteSGIImage of coders/sgi.c.
Reference:
https://github.com/ImageMagick/ImageMagick/issues/1562
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: epel-8 [bug 1793178]
Affects: fedora-all [bug 1793179]
---
Upstream fix:
https://github.com/ImageMagick/ImageMagick6/commit/9e7db22f8c374301db3f968757f0d08070fd4e54
---
ImageMagick 7 commit:
https://github.com/ImageMagick/ImageMagick/commit/6ae32a9038e360b3491969d5d03d490884f02b4c
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This
Bugzilla
CVE-2019-14981 ImageMagick: division by zero in MeanShiftImage in MagickCore/feature.c
bugzilla·2019-10-02·CVSS 6.5
CVE-2019-14981 [MEDIUM] CVE-2019-14981 ImageMagick: division by zero in MeanShiftImage in MagickCore/feature.c
CVE-2019-14981 ImageMagick: division by zero in MeanShiftImage in MagickCore/feature.c
In ImageMagick 7.x before 7.0.8-41 and 6.x before 6.9.10-41, there is a divide-by-zero vulnerability in the MeanShiftImage function. It allows an attacker to cause a denial of service by sending a crafted file.
References:
https://github.com/ImageMagick/ImageMagick/commit/a77d8d97f5a7bced0468f0b08798c83fb67427bc
https://github.com/ImageMagick/ImageMagick/issues/1552
https://github.com/ImageMagick/ImageMagick6/commit/b522d2d857d2f75b659936b59b0da9df1682c256
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1770647]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-20
Bugzilla
CVE-2019-12979 imagemagick: use of uninitialized value in functionSyncImageSettings in MagickCore/image.c
bugzilla·2019-07-23·CVSS 7.8
CVE-2019-12979 [HIGH] CVE-2019-12979 imagemagick: use of uninitialized value in functionSyncImageSettings in MagickCore/image.c
CVE-2019-12979 imagemagick: use of uninitialized value in functionSyncImageSettings in MagickCore/image.c
A vulnerability was found in ImageMagick 7.0.8-34 has a "use of uninitialized value" vulnerability in the
SyncImageSettings function in MagickCore/image.c. This is related to AcquireImage in magick/image.c.
Reference:
https://github.com/ImageMagick/ImageMagick/issues/1522
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1732295]
---
Upstream patches:
https://github.com/ImageMagick/ImageMagick/commit/ee3dae8624e69261760754442827aea4d0254a6f
https://github.com/ImageMagick/ImageMagick6/commit/27b1c74979ac473a430e266ff6c4b645664bc805
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 ht
Bugzilla
CVE-2019-12975 imagemagick: memory leak vulnerability in function WriteDPXImage in coders/dpx.c
bugzilla·2019-07-23·CVSS 5.5
CVE-2019-12975 [MEDIUM] CVE-2019-12975 imagemagick: memory leak vulnerability in function WriteDPXImage in coders/dpx.c
CVE-2019-12975 imagemagick: memory leak vulnerability in function WriteDPXImage in coders/dpx.c
ImageMagick 7.0.8-34 has a memory leak vulnerability in the WriteDPXImage
function in coders/dpx.c.
Reference:
https://github.com/ImageMagick/ImageMagick/issues/1517
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1732283]
---
Upstream patches:
https://github.com/ImageMagick/ImageMagick6/commit/b9c3aa197020ca091a21145cf46855afd4ddcb07
https://github.com/ImageMagick/ImageMagick/commit/ee5b9c56b9ca18ed0750f8a15e0d1a6da92a6e99
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug is now closed. Further updates for individual products w
Bugzilla
CVE-2019-12976 imagemagick: memory leak vulnerability in function ReadPCLImage in coders/pcl.c
bugzilla·2019-07-23·CVSS 5.5
CVE-2019-12976 [MEDIUM] CVE-2019-12976 imagemagick: memory leak vulnerability in function ReadPCLImage in coders/pcl.c
CVE-2019-12976 imagemagick: memory leak vulnerability in function ReadPCLImage in coders/pcl.c
A vulnerability was found in ImageMagick 7.0.8-34 has a memory leak in the ReadPCLImage function in
coders/pcl.c.
Reference:
https://github.com/ImageMagick/ImageMagick/issues/1520
Upstream fix:
https://github.com/ImageMagick/ImageMagick6/commit/ff840181f631b1b7f29160cae24d792fcd176bae
https://github.com/ImageMagick/ImageMagick/commit/c0fe488e7052f68d4eb7768805a857ef6fef928d
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1732285]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug is now closed. Further updates for individual produc
Bugzilla
CVE-2019-12978 imagemagick: use of uninitialized value in function ReadPANGOImage in coders/pango.c
bugzilla·2019-07-23·CVSS 7.8
CVE-2019-12978 [HIGH] CVE-2019-12978 imagemagick: use of uninitialized value in function ReadPANGOImage in coders/pango.c
CVE-2019-12978 imagemagick: use of uninitialized value in function ReadPANGOImage in coders/pango.c
A vulnerability was found in ImageMagick 7.0.8-34 has a "use of uninitialized value" vulnerability in the
ReadPANGOImage function in coders/pango.c.
Reference:
https://github.com/ImageMagick/ImageMagick/issues/1519
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1732293]
---
Upstream patches:
https://github.com/ImageMagick/ImageMagick/commit/ee60b346b8fce70eb3b239a78e2486fba9615069
https://github.com/ImageMagick/ImageMagick6/commit/ae1ded6140bfa8ae9f6dcba5413b72d98ed94614
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug is
Bugzilla
CVE-2019-13300 ImageMagick: heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishandling columns
bugzilla·2019-07-17·CVSS 8.8
CVE-2019-13300 [HIGH] CVE-2019-13300 ImageMagick: heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishandling columns
CVE-2019-13300 ImageMagick: heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishandling columns
ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishandling columns.
Upstream Issue:
https://github.com/ImageMagick/ImageMagick/issues/1586
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1730581]
---
Upstream patches:
https://github.com/ImageMagick/ImageMagick/commit/a906fe9298bf89e01d5272023db687935068849a
https://github.com/ImageMagick/ImageMagick6/commit/5e409ae7a389cdf2ed17469303be3f3f21cec450
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:11
Bugzilla
CVE-2019-13301 ImageMagick: memory leaks in AcquireMagickMemory
bugzilla·2019-07-17·CVSS 6.5
CVE-2019-13301 [MEDIUM] CVE-2019-13301 ImageMagick: memory leaks in AcquireMagickMemory
CVE-2019-13301 ImageMagick: memory leaks in AcquireMagickMemory
ImageMagick 7.0.8-50 Q16 has memory leaks in AcquireMagickMemory because of an AnnotateImage error.
Upstream Issue:
https://github.com/ImageMagick/ImageMagick/issues/1585
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1730576]
---
Upstream patch:
https://github.com/ImageMagick/ImageMagick/commit/f595a1985233c399a05c0c37cc41de16a90dd025
---
ImageMagick6 commit:
https://github.com/ImageMagick/ImageMagick6/commit/0b7d3675438cbcde824e751895847a0794406e08
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug is now closed. Further updates for individual products w
Bugzilla
CVE-2019-13304 ImageMagick: stack-based buffer overflow at coders/pnm.c in WritePNMImage because of a misplaced assignment
bugzilla·2019-07-16·CVSS 7.8
CVE-2019-13304 [HIGH] CVE-2019-13304 ImageMagick: stack-based buffer overflow at coders/pnm.c in WritePNMImage because of a misplaced assignment
CVE-2019-13304 ImageMagick: stack-based buffer overflow at coders/pnm.c in WritePNMImage because of a misplaced assignment
ImageMagick 7.0.8-50 Q16 has a stack-based buffer overflow at coders/pnm.c in WritePNMImage because of a misplaced assignment.
Upstream Issue:
https://github.com/ImageMagick/ImageMagick/issues/1614
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1730365]
---
Upstream patches:
https://github.com/ImageMagick/ImageMagick6/commit/bfa3b9610c83227894c92b0d312ad327fceb6241
https://github.com/ImageMagick/ImageMagick/commit/7689875ef64f34141e7292f6945efdf0530b4a5e
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This
Bugzilla
CVE-2019-13310 ImageMagick: memory leaks at AcquireMagickMemory because of an error in MagickWand/mogrify.c
bugzilla·2019-07-16·CVSS 6.5
CVE-2019-13310 [MEDIUM] CVE-2019-13310 ImageMagick: memory leaks at AcquireMagickMemory because of an error in MagickWand/mogrify.c
CVE-2019-13310 ImageMagick: memory leaks at AcquireMagickMemory because of an error in MagickWand/mogrify.c
ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of an error in MagickWand/mogrify.c.
Upstream Issue:
https://github.com/ImageMagick/ImageMagick/issues/1616
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1730334]
---
Upstream patch:
https://github.com/ImageMagick/ImageMagick/commit/5f21230b657ccd65452dd3d94c5b5401ba691a2d
https://github.com/ImageMagick/ImageMagick6/commit/5982632109cad48bc6dab867298fdea4dea57c51
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug is now closed. Further updates
Bugzilla
CVE-2019-13306 ImageMagick: stack-based buffer overflow at coders/pnm.c in WritePNMImage because of off-by-one errors
bugzilla·2019-07-16·CVSS 7.8
CVE-2019-13306 [HIGH] CVE-2019-13306 ImageMagick: stack-based buffer overflow at coders/pnm.c in WritePNMImage because of off-by-one errors
CVE-2019-13306 ImageMagick: stack-based buffer overflow at coders/pnm.c in WritePNMImage because of off-by-one errors
ImageMagick 7.0.8-50 Q16 has a stack-based buffer overflow at coders/pnm.c in WritePNMImage because of off-by-one errors.
Upstream Issue:
https://github.com/ImageMagick/ImageMagick/issues/1612
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1730359]
---
Upstream patches:
https://github.com/ImageMagick/ImageMagick6/commit/cb5ec7d98195aa74d5ed299b38eff2a68122f3fa
https://github.com/ImageMagick/ImageMagick/commit/e92040ea6ee2a844ebfd2344174076795a4787bd
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug is now
Bugzilla
CVE-2019-13307 ImageMagick: heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishandling rows
bugzilla·2019-07-16·CVSS 7.8
CVE-2019-13307 [HIGH] CVE-2019-13307 ImageMagick: heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishandling rows
CVE-2019-13307 ImageMagick: heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishandling rows
ImageMagick 7.0.8-50 Q16 has a heap-based buffer overflow at MagickCore/statistic.c in EvaluateImages because of mishandling rows.
Upstream Issue:
https://github.com/ImageMagick/ImageMagick/issues/1615
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1730352]
---
Upstream patches:
https://github.com/ImageMagick/ImageMagick6/commit/91e58d967a92250439ede038ccfb0913a81e59fe
https://github.com/ImageMagick/ImageMagick/commit/025e77fcb2f45b21689931ba3bf74eac153afa48
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
--
Bugzilla
CVE-2019-13309 ImageMagick: memory leaks at AcquireMagickMemory due to mishandling the NoSuchImage error in CLIListOperatorImages
bugzilla·2019-07-16·CVSS 6.5
CVE-2019-13309 [MEDIUM] CVE-2019-13309 ImageMagick: memory leaks at AcquireMagickMemory due to mishandling the NoSuchImage error in CLIListOperatorImages
CVE-2019-13309 ImageMagick: memory leaks at AcquireMagickMemory due to mishandling the NoSuchImage error in CLIListOperatorImages
ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of mishandling the NoSuchImage error in CLIListOperatorImages in MagickWand/operation.c.
Upstream Issue:
https://github.com/ImageMagick/ImageMagick/issues/1616
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1730338]
---
Upstream patches:
https://github.com/ImageMagick/ImageMagick6/commit/5982632109cad48bc6dab867298fdea4dea57c51
https://github.com/ImageMagick/ImageMagick/commit/5f21230b657ccd65452dd3d94c5b5401ba691a2d
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.re
Bugzilla
CVE-2019-13311 ImageMagick: memory leaks at AcquireMagickMemory because of a wand/mogrify.c error
bugzilla·2019-07-16·CVSS 6.5
CVE-2019-13311 [MEDIUM] CVE-2019-13311 ImageMagick: memory leaks at AcquireMagickMemory because of a wand/mogrify.c error
CVE-2019-13311 ImageMagick: memory leaks at AcquireMagickMemory because of a wand/mogrify.c error
ImageMagick 7.0.8-50 Q16 has memory leaks at AcquireMagickMemory because of a wand/mogrify.c error.
Upstream Issues:
https://github.com/ImageMagick/ImageMagick/issues/1623
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1730331]
---
Upstream patch:
https://github.com/ImageMagick/ImageMagick/commit/4a334bbf5584de37c6f5a47c380a531c8c4b140a
https://github.com/ImageMagick/ImageMagick6/commit/bb812022d0bc12107db215c981cab0b1ccd73d91
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug is now closed. Further updates for individual pro
Bugzilla
CVE-2019-13454 ImageMagick: division by zero in RemoveDuplicateLayers in MagickCore/layer.c
bugzilla·2019-07-10·CVSS 6.5
CVE-2019-13454 [MEDIUM] CVE-2019-13454 ImageMagick: division by zero in RemoveDuplicateLayers in MagickCore/layer.c
CVE-2019-13454 ImageMagick: division by zero in RemoveDuplicateLayers in MagickCore/layer.c
ImageMagick 7.0.8-54 Q16 allows Division by Zero in RemoveDuplicateLayers in MagickCore/layer.c.
Reference:
https://github.com/ImageMagick/ImageMagick/issues/1629
Upstream commit:
https://github.com/ImageMagick/ImageMagick/commit/1ddcf2e4f28029a888cadef2e757509ef5047ad8
https://github.com/ImageMagick/ImageMagick6/commit/4f31d78716ac94c85c244efcea368fea202e2ed4
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1728475]
---
The Division by Zero is caused by curr->ticks_per_second being 0 in RemoveDuplicateLayers().
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/
Bugzilla
CVE-2019-13135 ImageMagick: a "use of uninitialized value" vulnerability in the function ReadCUTImage leading to a crash and DoS
bugzilla·2019-07-02·CVSS 8.8
CVE-2019-13135 [HIGH] CVE-2019-13135 ImageMagick: a "use of uninitialized value" vulnerability in the function ReadCUTImage leading to a crash and DoS
CVE-2019-13135 ImageMagick: a "use of uninitialized value" vulnerability in the function ReadCUTImage leading to a crash and DoS
ImageMagick before 7.0.8-50 has a "use of uninitialized value" vulnerability in the function ReadCUTImage in coders/cut.c.
Upstream Issue:
https://github.com/ImageMagick/ImageMagick/issues/1599
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1726108]
---
Upstream patch:
https://github.com/ImageMagick/ImageMagick/commit/cdb383749ef7b68a38891440af8cc23e0115306d
---
ImageMagick6 commit:
https://github.com/ImageMagick/ImageMagick6/commit/1e59b29e520d2beab73e8c78aacd5f1c0d76196d
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errat
Bugzilla
CVE-2019-13134 ImageMagick: a memory leak vulnerability in the function ReadVIFFImage in coders/viff.c
bugzilla·2019-07-02·CVSS 5.5
CVE-2019-13134 [MEDIUM] CVE-2019-13134 ImageMagick: a memory leak vulnerability in the function ReadVIFFImage in coders/viff.c
CVE-2019-13134 ImageMagick: a memory leak vulnerability in the function ReadVIFFImage in coders/viff.c
ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadVIFFImage in coders/viff.c.
Upstream Issue:
https://github.com/ImageMagick/ImageMagick/issues/1600
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1726082]
---
Upstream patch:
https://github.com/ImageMagick/ImageMagick/commit/fe3066122ef72c82415811d25e9e3fad622c0a99
---
ImageMagick6 commit:
https://github.com/ImageMagick/ImageMagick6/commit/210474b2fac6a661bfa7ed563213920e93e76395
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug is now cl
Bugzilla
CVE-2019-13133 ImageMagick: a memory leak vulnerability in the function ReadBMPImage in coders/bmp.c
bugzilla·2019-07-02·CVSS 5.5
CVE-2019-13133 [MEDIUM] CVE-2019-13133 ImageMagick: a memory leak vulnerability in the function ReadBMPImage in coders/bmp.c
CVE-2019-13133 ImageMagick: a memory leak vulnerability in the function ReadBMPImage in coders/bmp.c
ImageMagick before 7.0.8-50 has a memory leak vulnerability in the function ReadBMPImage in coders/bmp.c.
Upstream Issue:
https://github.com/ImageMagick/ImageMagick/issues/1600
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1726079]
---
Upstream patch:
https://github.com/ImageMagick/ImageMagick/commit/fe3066122ef72c82415811d25e9e3fad622c0a99
---
ImageMagick6 commit:
https://github.com/ImageMagick/ImageMagick6/commit/210474b2fac6a661bfa7ed563213920e93e76395
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug is now closed
Bugzilla
CVE-2019-7397 ImageMagick: Memory leak in the WritePDFImage function in coders/pdf.c
bugzilla·2019-02-05·CVSS 7.5
CVE-2019-7397 [HIGH] CVE-2019-7397 ImageMagick: Memory leak in the WritePDFImage function in coders/pdf.c
CVE-2019-7397 ImageMagick: Memory leak in the WritePDFImage function in coders/pdf.c
In ImageMagick before 7.0.8-25, several memory leaks exist in WritePDFImage in coders/pdf.c.
References:
https://github.com/ImageMagick/ImageMagick/commit/306c1f0fa5754ca78efd16ab752f0e981d4f6b82
https://github.com/ImageMagick/ImageMagick/issues/1454
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1672590]
---
Upstream patch:
https://github.com/ImageMagick/ImageMagick/commit/306c1f0fa5754ca78efd16ab752f0e981d4f6b82
---
ImageMagick6 commit:
https://github.com/ImageMagick/ImageMagick6/commit/3b28c8d93aa469f6d90c8b3c05fe3d88c2584e32
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redh
Bugzilla
CVE-2019-7398 ImageMagick: Memory leak in the WriteDIBImage function in coders/dib.c
bugzilla·2019-02-05·CVSS 7.5
CVE-2019-7398 [HIGH] CVE-2019-7398 ImageMagick: Memory leak in the WriteDIBImage function in coders/dib.c
CVE-2019-7398 ImageMagick: Memory leak in the WriteDIBImage function in coders/dib.c
In ImageMagick before 7.0.8-25, a memory leak exists in WriteDIBImage in coders/dib.c.
References:
https://github.com/ImageMagick/ImageMagick/issues/1453
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1672590]
---
Upstream patch:
https://github.com/ImageMagick/ImageMagick/commit/9cf2f738f714eba6d47be1127ed255acd2b51750
---
ImageMagick6 commit:
https://github.com/ImageMagick/ImageMagick6/commit/dfa1e752bce7b6994765897fb6606d6069345442
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2020:1180 https://access.redhat.com/errata/RHSA-2020:1180
---
This bug is now closed. Further updates for individual product
2019-08-14
Published