CVE-2013-4298

The ReadGIFImage function in coders/gif.c in ImageMagick before 6.7.8-8 allows remote attackers to cause a denial of service (memory corruption and application crash) via a crafted comment in a GIF image.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
cpe:2.3:a:imagemagick:imagemagick:6.7.8-0:*:*:*:*:*:*:*
cpe:2.3:a:imagemagick:imagemagick:6.7.8-1:*:*:*:*:*:*:*
cpe:2.3:a:imagemagick:imagemagick:6.7.8-2:*:*:*:*:*:*:*
cpe:2.3:a:imagemagick:imagemagick:6.7.8-3:*:*:*:*:*:*:*
cpe:2.3:a:imagemagick:imagemagick:6.7.8-4:*:*:*:*:*:*:*
cpe:2.3:a:imagemagick:imagemagick:6.7.8-5:*:*:*:*:*:*:*
cpe:2.3:a:imagemagick:imagemagick:6.7.8-6:*:*:*:*:*:*:*

History

21 Nov 2024, 01:55

Type Values Removed Values Added
References () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=721273 - () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=721273 -
References () http://secunia.com/advisories/54581 - Vendor Advisory () http://secunia.com/advisories/54581 - Vendor Advisory
References () http://secunia.com/advisories/54671 - Vendor Advisory () http://secunia.com/advisories/54671 - Vendor Advisory
References () http://www.debian.org/security/2013/dsa-2750 - () http://www.debian.org/security/2013/dsa-2750 -
References () http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=23921 - Exploit () http://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=23921 - Exploit
References () http://www.imagemagick.org/script/changelog.php - () http://www.imagemagick.org/script/changelog.php -
References () http://www.ubuntu.com/usn/USN-1949-1 - () http://www.ubuntu.com/usn/USN-1949-1 -
References () https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1218248 - () https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1218248 -

Information

Published : 2013-09-10 19:55

Updated : 2024-11-21 01:55


NVD link : CVE-2013-4298

Mitre link : CVE-2013-4298

CVE.ORG link : CVE-2013-4298


JSON object : View

Products Affected

imagemagick

  • imagemagick
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer