Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The OpenBlob function in blob.c in GraphicsMagick before 1.3.24 and ImageMagick allows remote attackers to execute arbitrary code via a | (pipe) character at the start of a filename.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
GraphicsMagick和ImageMagick 安全漏洞
Vulnerability Description
GraphicsMagick是一套简单的图像处理工具,该工具对图像提供尺寸调整、旋转、加亮等功能。ImageMagick是美国ImageMagick Studio公司的一套开源的图象处理软件,该软件可读取、转换、写入多种格式的图片。 GraphicsMagick 1.3.24之前版本和ImageMagick的blob.c文件中的‘OpenBlob’函数中存在安全漏洞。远程攻击者可借助文件名开始的‘|’字符利用该漏洞执行shell代码。
CVSS Information
N/A
Vulnerability Type
N/A