Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21319
HistoryAug 19, 2019 - 8:28 a.m.

Integer Overflows

2019-08-1908:28:53
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

0.001 Low

EPSS

Percentile

46.4%

ImageMagick is vulnerable to integer overflows. The attack is possible because it does not properly validate the data size against the header size in coders/pnm.c in WritePNMImage function, causing stack-based buffer overflows.