SB2017073003 - Multiple vulnerabilities in ImageMagick
Published: July 30, 2017 Updated: August 10, 2020
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 6 secuirty vulnerabilities.
1) Input validation error (CVE-ID: CVE-2017-12427)
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The ProcessMSLScript function in coders/msl.c in ImageMagick before 6.9.9-5 and 7.x before 7.0.6-5 allows remote attackers to cause a denial of service (memory leak) via a crafted file, related to the WriteMSLImage function.
2) Out-of-bounds read (CVE-ID: CVE-2017-11753)
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The GetImageDepth function in MagickCore/attribute.c in ImageMagick 7.0.6-4 might allow remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted Flexible Image Transport System (FITS) file.
3) Input validation error (CVE-ID: CVE-2017-11754)
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The WritePICONImage function in coders/xpm.c in ImageMagick 7.0.6-4 allows remote attackers to cause a denial of service (memory leak) via a crafted file that is mishandled in an OpenPixelCache call.
4) Input validation error (CVE-ID: CVE-2017-11755)
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The WritePICONImage function in coders/xpm.c in ImageMagick 7.0.6-4 allows remote attackers to cause a denial of service (memory leak) via a crafted file that is mishandled in an AcquireSemaphoreInfo call.
5) NULL pointer dereference (CVE-ID: CVE-2017-11750)
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a NULL pointer dereference error. A remote attacker can trigger denial of service conditions via a crafted file.
6) Input validation error (CVE-ID: CVE-2017-11751)
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The WritePICONImage function in coders/xpm.c in ImageMagick 7.0.6-4 allows remote attackers to cause a denial of service (memory leak) via a crafted file.
Remediation
Install update from vendor's website.
References
- https://github.com/ImageMagick/ImageMagick/commit/e793eb203e5e0f91f5037aed6585e81b1e27395b
- https://github.com/ImageMagick/ImageMagick/issues/636
- https://security.gentoo.org/glsa/201711-07
- https://github.com/ImageMagick/ImageMagick/issues/629
- https://github.com/ImageMagick/ImageMagick/issues/633
- https://github.com/ImageMagick/ImageMagick/issues/634
- https://github.com/ImageMagick/ImageMagick/issues/632
- https://github.com/ImageMagick/ImageMagick/issues/631