Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22270
HistoryJan 09, 2020 - 6:34 a.m.

Denial Of Service (DoS)

2020-01-0906:34:53
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

0.003 Low

EPSS

Percentile

71.0%

ImageMagick is vulnerable to denial of service (DoS). The attack is possible because coders/png.c does not have of a proper length check related to Magick_png_write_raw_profile and LocaleNCompare before writing PNG image, allowing an attacker to input a malicious PNG file to trigger a heap buffer overflow.