CVE-2019-9956
published 2019-03-24CVE-2019-9956: In ImageMagick 7.0.8-35 Q16, there is a stack-based buffer overflow in the function PopHexPixel of coders/ps.c, which allows an attacker to cause a denial of…
PriorityP346high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
EPSS
5.92%
92.5th percentile
In ImageMagick 7.0.8-35 Q16, there is a stack-based buffer overflow in the function PopHexPixel of coders/ps.c, which allows an attacker to cause a denial of service or code execution via a crafted image file.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | imagemagick | < imagemagick 8:6.9.10.23+dfsg-2.1 (bookworm) | imagemagick 8:6.9.10.23+dfsg-2.1 (bookworm) |
| imagemagick | imagemagick | — | — |
| imagemagick | imagemagick | >= 0 < 8:6.9.10.23+dfsg-2.1 | 8:6.9.10.23+dfsg-2.1 |
| imagemagick | imagemagick | >= 0 < 8:6.9.10.23+dfsg-2.1 | 8:6.9.10.23+dfsg-2.1 |
| imagemagick | imagemagick | >= 0 < 8:6.9.10.23+dfsg-2.1 | 8:6.9.10.23+dfsg-2.1 |
| imagemagick | imagemagick | >= 0 < 8:6.9.10.23+dfsg-2.1 | 8:6.9.10.23+dfsg-2.1 |
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vendor_debian8.8HIGH
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
ImageMagick vulnerabilities
vendor_ubuntu·2024-10-15
CVE-2019-7398 ImageMagick vulnerabilities
Title: ImageMagick vulnerabilities
Summary: Several security issues were fixed in ImageMagick.
It was discovered that ImageMagick incorrectly handled certain
malformed image files. If a user or automated system using ImageMagick
were tricked into processing a specially crafted file, an attacker could
exploit this to cause a denial of service or affect the reliability of the
system. The vulnerabilities included memory leaks, buffer overflows, and
improper handling of pixel data.
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
ImageMagick vulnerabilities
vendor_ubuntu·2019-06-25
CVE-2017-12805 ImageMagick vulnerabilities
Title: ImageMagick vulnerabilities
Summary: Several security issues were fixed in ImageMagick.
It was discovered that ImageMagick incorrectly handled certain malformed
image files. If a user or automated system using ImageMagick were tricked
into opening a specially crafted image, an attacker could exploit this to
cause a denial of service or possibly execute code with the privileges of
the user invoking the program.
Due to a large number of issues discovered in GhostScript that prevent it
from being used by ImageMagick safely, the update for Ubuntu 18.10 and
Ubuntu 19.04 includes a default policy change that disables support for the
Postscript and PDF formats in ImageMagick. This policy can be overridden if
necessary by using an alternate ImageMagick policy configuration.
Instructions
Red Hat
imagemagick: stack-based buffer overflow in function PopHexPixel in coders/ps.c
vendor_redhat·2019-03-22·CVSS 8.8
CVE-2019-9956 [HIGH] CWE-121 imagemagick: stack-based buffer overflow in function PopHexPixel in coders/ps.c
imagemagick: stack-based buffer overflow in function PopHexPixel in coders/ps.c
In ImageMagick 7.0.8-35 Q16, there is a stack-based buffer overflow in the function PopHexPixel of coders/ps.c, which allows an attacker to cause a denial of service or code execution via a crafted image file.
Statement: This issue affects the versions of ImageMagick as shipped with Red Hat Enterprise Linux 6 and 7.
Red Hat Enterprise Linux 6 is now in Maintenance Support 2 Phase of the support and maintenance life cycle. This has been rated as having a
security impact of Moderate, and is not currently planned to be addressed in future updates. For additional information, refer to the
Red Hat Enterprise Linux Life Cycle: https://access.redhat.com/support/policy/updates/errata/.
Package: ImageMagick (Red Hat
Debian
CVE-2019-9956: imagemagick - In ImageMagick 7.0.8-35 Q16, there is a stack-based buffer overflow in the funct...
vendor_debian·2019·CVSS 8.8
CVE-2019-9956 [HIGH] CVE-2019-9956: imagemagick - In ImageMagick 7.0.8-35 Q16, there is a stack-based buffer overflow in the funct...
In ImageMagick 7.0.8-35 Q16, there is a stack-based buffer overflow in the function PopHexPixel of coders/ps.c, which allows an attacker to cause a denial of service or code execution via a crafted image file.
Scope: local
bookworm: resolved (fixed in 8:6.9.10.23+dfsg-2.1)
bullseye: resolved (fixed in 8:6.9.10.23+dfsg-2.1)
forky: resolved (fixed in 8:6.9.10.23+dfsg-2.1)
sid: resolved (fixed in 8:6.9.10.23+dfsg-2.1)
trixie: resolved (fixed in 8:6.9.10.23+dfsg-2.1)
GHSA
GHSA-43fw-27v6-42x2: In ImageMagick 7
ghsa_unreviewed·2022-05-13
CVE-2019-9956 [HIGH] CWE-787 GHSA-43fw-27v6-42x2: In ImageMagick 7
In ImageMagick 7.0.8-35 Q16, there is a stack-based buffer overflow in the function PopHexPixel of coders/ps.c, which allows an attacker to cause a denial of service or code execution via a crafted image file.
OSV
CVE-2019-9956: In ImageMagick 7
osv·2019-03-24·CVSS 8.8
CVE-2019-9956 [HIGH] CVE-2019-9956: In ImageMagick 7
In ImageMagick 7.0.8-35 Q16, there is a stack-based buffer overflow in the function PopHexPixel of coders/ps.c, which allows an attacker to cause a denial of service or code execution via a crafted image file.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2019-15505 kernel: out of bounds read in drivers/media/usb/dvb-usb/technisat-usb2.c
bugzilla·2019-08-29·CVSS 9.8
CVE-2019-15505 [CRITICAL] CVE-2019-15505 kernel: out of bounds read in drivers/media/usb/dvb-usb/technisat-usb2.c
CVE-2019-15505 kernel: out of bounds read in drivers/media/usb/dvb-usb/technisat-usb2.c
A vulnerability was found in technisat_usb2_get_ir in drivers/media/usb/dvb-usb/technisat-usb2.c in DVB USB subsystem, there was an out-of-bounds read for an array in struct technisat_usb2_state state->buf with no boundary check applied until 0xff byte is encountered, if it is not found with in the limits it goes beyond the array size, this exposes kernel data structure which should not happen.
Reference:
https://lore.kernel.org/linux-media/[email protected]/
https://git.linuxtv.org/media_tree.git/commit/?id=0c4df39e504bf925ab666132ac3c98d6cbbe380b
https://lore.kernel.org/lkml/[email protected]/
Discussion:
Created kernel tracking bugs for t
Bugzilla
CVE-2019-9956 ImageMagick: stack-based buffer overflow in function PopHexPixel in coders/ps.c [fedora-all]
bugzilla·2019-03-25·CVSS 8.8
CVE-2019-9956 [HIGH] CVE-2019-9956 ImageMagick: stack-based buffer overflow in function PopHexPixel in coders/ps.c [fedora-all]
CVE-2019-9956 ImageMagick: stack-based buffer overflow in function PopHexPixel in coders/ps.c [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affect
Bugzilla
CVE-2019-9956 imagemagick: stack-based buffer overflow in function PopHexPixel in coders/ps.c
bugzilla·2019-03-25·CVSS 8.8
CVE-2019-9956 [HIGH] CVE-2019-9956 imagemagick: stack-based buffer overflow in function PopHexPixel in coders/ps.c
CVE-2019-9956 imagemagick: stack-based buffer overflow in function PopHexPixel in coders/ps.c
In ImageMagick 7.0.8-35 Q16, there is a stack-based buffer overflow in the function PopHexPixel of coders/ps.c, which allows an attacker to cause a denial of service or code execution via a crafted image file.
Reference:
https://github.com/ImageMagick/ImageMagick/issues/1523
Discussion:
Created ImageMagick tracking bugs for this issue:
Affects: fedora-all [bug 1692301]
---
Statement:
This issue affects the versions of ImageMagick as shipped with Red Hat Enterprise Linux 6 and 7.
Red Hat Enterprise Linux 6 is now in Maintenance Support 2 Phase of the support and maintenance life cycle. This has been rated as having a
security impact of Moderate, and is not currently planned to be addressed
http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00010.htmlhttp://www.securityfocus.com/bid/107546http://www.securityfocus.com/bid/107672https://github.com/ImageMagick/ImageMagick/issues/1523https://lists.debian.org/debian-lts-announce/2019/05/msg00015.htmlhttps://seclists.org/bugtraq/2019/Apr/37https://usn.ubuntu.com/4034-1/https://www.debian.org/security/2019/dsa-4436http://lists.opensuse.org/opensuse-security-announce/2019-05/msg00006.htmlhttp://lists.opensuse.org/opensuse-security-announce/2019-05/msg00010.htmlhttp://www.securityfocus.com/bid/107546http://www.securityfocus.com/bid/107672https://github.com/ImageMagick/ImageMagick/issues/1523https://lists.debian.org/debian-lts-announce/2019/05/msg00015.htmlhttps://seclists.org/bugtraq/2019/Apr/37https://usn.ubuntu.com/4034-1/https://www.debian.org/security/2019/dsa-4436
2019-03-24
Published