CVE-2007-4988

7.8HIGH

Sign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code via a crafted width value in an image file, which triggers

发布于: 9/24/2007更新于: 4/9/2025

描述

Sign extension error in the ReadDIBImage function in ImageMagick before 6.3.5-9 allows context-dependent attackers to execute arbitrary code via a crafted width value in an image file, which triggers an integer overflow and a heap-based buffer overflow.

AI分析AI驱动

受影响产品

imagemagickimagemagick
canonicalubuntu_linux
6.06
canonicalubuntu_linux
6.10
canonicalubuntu_linux
7.04

参考资料