Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-0284
HistoryAug 29, 2022 - 3:15 p.m.

Heap overflow

2022-08-2915:15:00
PRIOn knowledge base
www.prio-n.com
6
imagemagick
getpixelalpha
tiff
picon
buffer overflow
information disclosure
denial of service

6.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

38.5%

A heap-based-buffer-over-read flaw was found in ImageMagick’s GetPixelAlpha() function of ‘pixel-accessor.h’. This vulnerability is triggered when an attacker passes a specially crafted Tagged Image File Format (TIFF) image to convert it into a PICON file format. This issue can potentially lead to a denial of service and information disclosure.

CPENameOperatorVersion
imagemagickeq< 7.1.0-20

6.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

38.5%