CVE Vulnerabilities

CVE-2006-0082

Use of Externally-Controlled Format String

Published: Jan 04, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Format string vulnerability in the SetImageInfo function in image.c for ImageMagick 6.2.3 and other versions, and GraphicsMagick, allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a numeric format string specifier such as %d in the file name, a variant of CVE-2005-0397, and as demonstrated using the convert program.

Weakness

The product uses a function that accepts a format string as an argument, but the format string originates from an external source.

Affected Software

Name Vendor Start Version End Version
Imagemagick Imagemagick 6.2.3 (including) 6.2.3 (including)
Red Hat Enterprise Linux 3 RedHat ImageMagick-0:5.5.6-18 *
Red Hat Enterprise Linux 4 RedHat ImageMagick-0:6.0.7.1-14 *
Imagemagick Ubuntu dapper *
Imagemagick Ubuntu devel *
Imagemagick Ubuntu edgy *
Imagemagick Ubuntu feisty *

Potential Mitigations

References