CVE Vulnerabilities

CVE-2006-4144

Published: Aug 15, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer overflow in the ReadSGIImage function in sgi.c in ImageMagick before 6.2.9 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via large (1) bytes_per_pixel, (2) columns, and (3) rows values, which trigger a heap-based buffer overflow.

Affected Software

NameVendorStart VersionEnd Version
ImagemagickImagemagick6.0.1 (including)6.0.1 (including)
ImagemagickImagemagick6.0.2 (including)6.0.2 (including)
ImagemagickImagemagick6.0.2.5 (including)6.0.2.5 (including)
ImagemagickImagemagick6.0.3 (including)6.0.3 (including)
ImagemagickImagemagick6.0.4 (including)6.0.4 (including)
ImagemagickImagemagick6.0.5 (including)6.0.5 (including)
ImagemagickImagemagick6.0.6 (including)6.0.6 (including)
ImagemagickImagemagick6.0.7 (including)6.0.7 (including)
ImagemagickImagemagick6.0.8 (including)6.0.8 (including)
ImagemagickImagemagick6.1 (including)6.1 (including)
ImagemagickImagemagick6.1.1.6 (including)6.1.1.6 (including)
ImagemagickImagemagick6.1.2 (including)6.1.2 (including)
ImagemagickImagemagick6.1.3 (including)6.1.3 (including)
ImagemagickImagemagick6.1.4 (including)6.1.4 (including)
ImagemagickImagemagick6.1.5 (including)6.1.5 (including)
ImagemagickImagemagick6.1.6 (including)6.1.6 (including)
ImagemagickImagemagick6.1.7 (including)6.1.7 (including)
ImagemagickImagemagick6.1.8 (including)6.1.8 (including)
ImagemagickImagemagick6.2 (including)6.2 (including)
ImagemagickImagemagick6.2.0.4 (including)6.2.0.4 (including)
ImagemagickImagemagick6.2.0.7 (including)6.2.0.7 (including)
ImagemagickImagemagick6.2.1 (including)6.2.1 (including)
ImagemagickImagemagick6.2.2 (including)6.2.2 (including)
ImagemagickImagemagick6.2.4 (including)6.2.4 (including)
ImagemagickImagemagick6.2.4.5 (including)6.2.4.5 (including)
ImagemagickImagemagick6.2.5 (including)6.2.5 (including)
ImagemagickImagemagick6.2.6 (including)6.2.6 (including)
ImagemagickImagemagick6.2.7 (including)6.2.7 (including)
ImagemagickImagemagick6.2.8 (including)6.2.8 (including)
Red Hat Enterprise Linux 3RedHatImageMagick-0:5.5.6-20*
Red Hat Enterprise Linux 4RedHatImageMagick-0:6.0.7.1-16*
GraphicsmagickUbuntudevel*
GraphicsmagickUbuntuedgy*
GraphicsmagickUbuntufeisty*
ImagemagickUbuntudapper*
ImagemagickUbuntudevel*
ImagemagickUbuntuedgy*
ImagemagickUbuntufeisty*

References