Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:27555
HistoryOct 12, 2020 - 12:07 a.m.

Arbitrary Code Execution

2020-10-1200:07:51
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10
php-imagick vulnerability memory untrusted party software out of bounds write boundary checks array of values imagickkernel::frommatrix()

EPSS

0.048

Percentile

92.8%

php-imagick is vulnerable to arbitrary code execution. Lack of boundary checks when writing to an array of values in ImagickKernel::fromMatrix() can potentially lead to out of bounds write to memory if the function is called with the data controlled by untrusted party.