CVE-2004-0827

Published Sep 16, 2004

Last updated 8 days ago

Overview

Description
Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via malformed (1) AVI, (2) BMP, or (3) DIB files.
Source
cve@mitre.org
NVD status
Modified
Products
imlib, imlib2, imagemagick, java_desktop_system, linux, mandrake_linux, mandrake_linux_corporate_server, enterprise_linux, enterprise_linux_desktop, fedora_core, linux_advanced_workstation, suse_linux, turbolinux, ubuntu_linux

Risk scores

CVSS 2.0

Type
Primary
Base score
7.5
Impact score
6.4
Exploitability score
10
Vector string
AV:N/AC:L/Au:N/C:P/I:P/A:P

Weaknesses

nvd@nist.gov
NVD-CWE-Other

Social media

Hype score
Not currently trending

Configurations