CVE Vulnerabilities

CVE-2006-3744

Published: Aug 25, 2006 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Multiple integer overflows in ImageMagick before 6.2.9 allows user-assisted attackers to execute arbitrary code via crafted Sun Rasterfile (bitmap) images that trigger heap-based buffer overflows.

Affected Software

Name Vendor Start Version End Version
Imagemagick Imagemagick * 6.2.8 (including)
Imagemagick Imagemagick 6.2 (including) 6.2 (including)
Imagemagick Imagemagick 6.2.0.4 (including) 6.2.0.4 (including)
Imagemagick Imagemagick 6.2.0.7 (including) 6.2.0.7 (including)
Imagemagick Imagemagick 6.2.0.8 (including) 6.2.0.8 (including)
Imagemagick Imagemagick 6.2.1 (including) 6.2.1 (including)
Imagemagick Imagemagick 6.2.1.7 (including) 6.2.1.7 (including)
Imagemagick Imagemagick 6.2.2 (including) 6.2.2 (including)
Imagemagick Imagemagick 6.2.2.5 (including) 6.2.2.5 (including)
Imagemagick Imagemagick 6.2.3 (including) 6.2.3 (including)
Imagemagick Imagemagick 6.2.3.6 (including) 6.2.3.6 (including)
Imagemagick Imagemagick 6.2.4 (including) 6.2.4 (including)
Imagemagick Imagemagick 6.2.4.5 (including) 6.2.4.5 (including)
Imagemagick Imagemagick 6.2.5 (including) 6.2.5 (including)
Imagemagick Imagemagick 6.2.6 (including) 6.2.6 (including)
Imagemagick Imagemagick 6.2.7 (including) 6.2.7 (including)
Graphicsmagick Ubuntu devel *
Graphicsmagick Ubuntu edgy *
Graphicsmagick Ubuntu feisty *
Imagemagick Ubuntu dapper *
Imagemagick Ubuntu edgy *
Imagemagick Ubuntu feisty *
Imagemagick Ubuntu upstream *
Red Hat Enterprise Linux 3 RedHat ImageMagick-0:5.5.6-20 *
Red Hat Enterprise Linux 4 RedHat ImageMagick-0:6.0.7.1-16 *

References