CVE-2008-3134

SOURCE - nist

Summary

Multiple unspecified vulnerabilities in GraphicsMagick before 1.2.4 allow remote attackers to cause a denial of service (crash, infinite loop, or memory consumption) via (a) unspecified vectors in the (1) AVI, (2) AVS, (3) DCM, (4) EPT, (5) FITS, (6) MTV, (7) PALM, (8) RLA, and (9) TGA decoder readers; and (b) the GetImageCharacteristics function in magick/image.c, as reachable from a crafted (10) PNG, (11) JPEG, (12) BMP, or (13) TIFF file.

EPSS Score: 0.05349 (0.931)

Common Weakness Enumeration (CWE)

SOURCE - nist

Resource Management Errors


debian

CREATED


UPDATED



EXPLOITABILITY SCORE

-


EXPLOITS FOUND
-

COMMON WEAKNESS ENUMERATION (CWE)-

CVSS SCORE

N/Alow
PackageTypeOS NameOS VersionAffected RangesFix Versions
debian/imagemagickdebdebian12>=8:6.9.11.60+dfsg-1.6Not yet available
debian/graphicsmagickdebdebian11<1.2.4-11.2.4-1
debian/graphicsmagickdebdebianunstable<1.2.4-11.2.4-1
debian/graphicsmagickdebdebian10<1.2.4-11.2.4-1
debian/graphicsmagickdebdebian12<1.2.4-11.2.4-1
debian/graphicsmagickdebdebian13<1.2.4-11.2.4-1
debian/imagemagickdebdebian13>=8:6.9.12.98+dfsg1-5.2Not yet available
debian/imagemagickdebdebian10>=8:6.9.10.23+dfsg-2.1+deb10u1Not yet available
debian/imagemagickdebdebian11>=8:6.9.11.60+dfsg-1.3+deb11u2Not yet available
debian/imagemagickdebdebianunstable>=8:6.9.12.98+dfsg1-5.2Not yet available

Severity and metrics

No CVSS data available from this source.

nist

CREATED


UPDATED



EXPLOITABILITY SCORE

10


EXPLOITS FOUND
-

COMMON WEAKNESS ENUMERATION (CWE)

CVSS SCORE

5medium

ubuntu

CREATED


UPDATED



EXPLOITABILITY SCORE

-


EXPLOITS FOUND
-

COMMON WEAKNESS ENUMERATION (CWE)-

CVSS SCORE

N/Amedium

redhat

CREATED


UPDATED



EXPLOITABILITY SCORE

3.4


EXPLOITS FOUND
-

COMMON WEAKNESS ENUMERATION (CWE)-

CVSS SCORE

1.9low