漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Imager versions before 1.033 for Perl treat unsigned EXIF IFD entry counts as signed
Vulnerability Description
Imager versions before 1.033 for Perl treat unsigned EXIF IFD entry counts as signed.
Imager mishandled large EXIF IFD entry count values, treating them as negative numbers. This could lead to an attempt to allocate a block nearly the size of the address space, which fails and kills the process.
An attacker could craft an image with EXIF data that terminates a worker process.
CVSS Information
N/A
Vulnerability Type
无符号至有符号转换错误
Vulnerability Title
Tony Cook imager 数字错误漏洞
Vulnerability Description
tony cook imager是tony cook个人开发者开源的一个图像处理程序。 Tony Cook imager 1.033之前版本存在安全漏洞,该漏洞源于将无符号EXIF IFD条目计数视为有符号数,导致大EXIF IFD条目计数值被错误处理为负数,试图分配近地址空间大小的内存块失败并终止进程。攻击者可能利用特制图像数据终止工作进程。
CVSS Information
N/A
Vulnerability Type
N/A