CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
Percentile
90.7%
SecurityFocus reports about ImageMagick:
ImageMagick is prone to a remote heap-based buffer-overflow
vulnerability because the application fails to properly
bounds-check user-supplied input before copying it to an
insufficiently sized memory buffer.
Exploiting this issue allows attackers to execute arbitrary
machine code in the context of applications that use the
ImageMagick library.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
FreeBSD | any | noarch | imagemagick | = 6.0.0 | UNKNOWN |
FreeBSD | any | noarch | imagemagick | < 6.2.9 | UNKNOWN |
FreeBSD | any | noarch | imagemagick-nox11 | = 6.0.0 | UNKNOWN |
FreeBSD | any | noarch | imagemagick-nox11 | < 6.2.9 | UNKNOWN |