Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In coders/psd.c in ImageMagick 7.0.7-0 Q16, a DoS in ReadPSDLayersInternal() due to lack of an EOF (End of File) check might cause huge CPU consumption. When a crafted PSD file, which claims a large "length" field in the header but does not contain sufficient backing data, is provided, the loop over "length" would consume huge CPU resources, since there is no EOF check inside the loop.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ImageMagick 资源管理错误漏洞
Vulnerability Description
ImageMagick是美国ImageMagick Studio公司的一套开源的图象处理软件。该软件可读取、转换、写入多种格式的图片。 ImageMagick 7.0.6-1 Q16版本中的coders/psd.c文件存在安全漏洞,该漏洞源于程序没有检测EOF(End of File)。远程攻击者可借助特制的XBM文件利用该漏洞造成拒绝服务(大量消耗CPU资源)。
CVSS Information
N/A
Vulnerability Type
N/A