Lucene search

K
ubuntuUbuntuUSN-523-1
HistoryOct 03, 2007 - 12:00 a.m.

ImageMagick vulnerabilities

2007-10-0300:00:00
ubuntu.com
47

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

8.3

Confidence

High

EPSS

0.05

Percentile

93.0%

Releases

  • Ubuntu 7.04
  • Ubuntu 6.10
  • Ubuntu 6.06

Packages

  • imagemagick -

Details

Multiple vulnerabilities were found in the image decoders of ImageMagick.
If a user or automated system were tricked into processing a malicious
DCM, DIB, XBM, XCF, or XWD image, a remote attacker could execute arbitrary
code with user privileges.

OSVersionArchitecturePackageVersionFilename
Ubuntu7.04noarchlibmagick9< 7:6.2.4.5.dfsg1-0.14ubuntu0.2UNKNOWN
Ubuntu7.04noarchimagemagick< 7:6.2.4.5.dfsg1-0.14ubuntu0.2UNKNOWN
Ubuntu7.04noarchlibmagick++9-dev< 7:6.2.4.5.dfsg1-0.14ubuntu0.2UNKNOWN
Ubuntu7.04noarchlibmagick++9c2a< 7:6.2.4.5.dfsg1-0.14ubuntu0.2UNKNOWN
Ubuntu7.04noarchlibmagick9-dev< 7:6.2.4.5.dfsg1-0.14ubuntu0.2UNKNOWN
Ubuntu7.04noarchperlmagick< 7:6.2.4.5.dfsg1-0.14ubuntu0.2UNKNOWN
Ubuntu6.10noarchlibmagick9< 7:6.2.4.5.dfsg1-0.10ubuntu0.4UNKNOWN
Ubuntu6.10noarchimagemagick< 7:6.2.4.5.dfsg1-0.10ubuntu0.4UNKNOWN
Ubuntu6.10noarchlibmagick++9-dev< 7:6.2.4.5.dfsg1-0.10ubuntu0.4UNKNOWN
Ubuntu6.10noarchlibmagick++9c2a< 7:6.2.4.5.dfsg1-0.10ubuntu0.4UNKNOWN
Rows per page:
1-10 of 181

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

CVSS3

7.8

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

AI Score

8.3

Confidence

High

EPSS

0.05

Percentile

93.0%