Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21699
HistoryOct 15, 2019 - 3:20 a.m.

Denial Of Service (DoS)

2019-10-1503:20:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.004 Low

EPSS

Percentile

74.7%

imagemagick is vulnerable to denial of service. A use-after-free in DestroyStringInfo in MagickCore/string.c caused by a mishandling of the error manager in coders/jpeg.c allows an attacker to crash the application from a heap-based buffer overflow, and potentially execute arbitrary code in the system.

CPENameOperatorVersion
imagemagickle6.8.8-9