Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
DrawGetStrokeDashArray in wand/drawing-wand.c in ImageMagick 7.0.7-1 mishandles certain NULL arrays, which allows attackers to perform Denial of Service (NULL pointer dereference and application crash in AcquireQuantumMemory within MagickCore/memory.c) by providing a crafted Image File as input.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ImageMagick 代码问题漏洞
Vulnerability Description
ImageMagick是美国ImageMagick Studio公司的一套开源的图象处理软件。该软件可读取、转换、写入多种格式的图片。 ImageMagick 7.0.7-1版本中的wand/drawing-wand.c文件的DrawGetStrokeDashArray函数存在安全漏洞,该漏洞源于程序没有正确的处理特定的空数组。攻击者可利用该漏洞造成拒绝服务(MagickCore/memory.c文件的‘AcquireQuantumMemory’函数崩溃和空指针逆向引用)。
CVSS Information
N/A
Vulnerability Type
N/A