SB2017052916 - Multiple vulnerabilities in ImageMagick



SB2017052916 - Multiple vulnerabilities in ImageMagick

Published: May 29, 2017 Updated: August 8, 2020

Security Bulletin ID SB2017052916
Severity
High
Patch available
YES
Number of vulnerabilities 5
Exploitation vector Remote access
Highest impact Code execution

Breakdown by Severity

High 20% Medium 80%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 5 secuirty vulnerabilities.


1) Input validation error (CVE-ID: CVE-2017-11170)

The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.

The ReadTGAImage function in coders ga.c in ImageMagick 7.0.5-6 has a memory leak vulnerability that can cause memory exhaustion via invalid colors data in the header of a TGA or VST file.


2) Input validation error (CVE-ID: CVE-2017-11166)

The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.

The ReadXWDImage function in codersxwd.c in ImageMagick 7.0.5-6 has a memory leak vulnerability that can cause memory exhaustion via a crafted length (number of color-map entries) field in the header of an XWD file.


3) Input validation error (CVE-ID: CVE-2017-11141)

The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.

The ReadMATImage function in codersmat.c in ImageMagick 7.0.5-6 has a memory leak vulnerability that can cause memory exhaustion via a crafted MAT file, related to incorrect ordering of a SetImageExtent call.


4) Input validation error (CVE-ID: CVE-2017-9261)

The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.

In ImageMagick 7.0.5-6 Q16, the ReadMNGImage function in coders/png.c allows attackers to cause a denial of service (memory leak) via a crafted file.


5) Input validation error (CVE-ID: CVE-2017-9262)

The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.

In ImageMagick 7.0.5-6 Q16, the ReadJNGImage function in coders/png.c allows attackers to cause a denial of service (memory leak) via a crafted file.


Remediation

Install update from vendor's website.