CVE Database
/

CVE-2007-1797

Back to search

CVE-2007-1797

Published: Apr 2, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple integer overflows in ImageMagick before 6.3.3-5 allow remote attackers to execute arbitrary code via (1) a crafted DCM image, which results in a heap-based overflow in the ReadDCMImage function, or (2) the (a) colors or (b) comments field in a crafted XWD image, which results in a heap-based overflow in the ReadXWDImage function, different issues than CVE-2007-1667.

VendorProductVersions

n/a

n/a

affected
n/a

References

23347
vdb-entry
x_refsource_BID
29857
third-party-advisory
x_refsource_SECUNIA
GLSA-200705-13
vendor-advisory
x_refsource_GENTOO
RHSA-2008:0145
vendor-advisory
x_refsource_REDHAT
oval:org.mitre.oval:def:9254
vdb-entry
signature
x_refsource_OVAL
24739
third-party-advisory
x_refsource_SECUNIA
29786
third-party-advisory
x_refsource_SECUNIA
1017839
vdb-entry
x_refsource_SECTRACK
USN-481-1
vendor-advisory
x_refsource_UBUNTU
23252
vdb-entry
x_refsource_BID
25992
third-party-advisory
x_refsource_SECUNIA
26177
third-party-advisory
x_refsource_SECUNIA
RHSA-2008:0165
vendor-advisory
x_refsource_REDHAT
imagemagick-readxwdimage-bo(33377)
vdb-entry
x_refsource_XF
ADV-2007-1200
vdb-entry
x_refsource_VUPEN
SUSE-SR:2007:008
vendor-advisory
x_refsource_SUSE
DSA-1858
vendor-advisory
x_refsource_DEBIAN
MDKSA-2007:147
vendor-advisory
x_refsource_MANDRIVA
imagemagick-readdcmimage-bo(33376)
vdb-entry
x_refsource_XF
24721
third-party-advisory
x_refsource_SECUNIA
25072
third-party-advisory
x_refsource_SECUNIA
25206
third-party-advisory
x_refsource_SECUNIA
36260
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now