Skip to main content

CWE archive

CWE-125 CVEs

Programmatic archive

9,202 CVEs tagged with CWE-125693 Critical, 3,825 High, 4,171 Medium, 509 Low, 4 Unrated.

CVE-2014-9837

Published Apr 11, 2017

coders/pnm.c in ImageMagick 6.9.0-1 Beta and earlier allows remote attackers to cause a denial of service (crash) via a crafted png file.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-8716

Published Apr 11, 2017

The JPEG decoder in ImageMagick before 6.8.9-9 allows local users to cause a denial of service (out-of-bounds memory access and crash).

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-8562

Published Apr 11, 2017

DCM decode in ImageMagick before 6.8.9-9 allows remote attackers to cause a denial of service (out-of-bounds read).

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-8355

Published Apr 11, 2017

PCX parser code in ImageMagick before 6.8.9-9 allows remote attackers to cause a denial of service (out-of-bounds read).

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-8354

Published Apr 11, 2017

The HorizontalFilter function in resize.c in ImageMagick before 6.8.9-9 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted image file.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-5322

Published Apr 11, 2017

The setByteArray function in tif_dir.c in libtiff 4.0.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted tiff image.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-7623

Published Apr 10, 2017

The iwmiffr_convert_row32 function in imagew-miff.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service (heap-based buffer over-read)…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-7607

Published Apr 9, 2017

The handle_gnu_hash function in readelf.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-7454

Published Apr 6, 2017

The iwgif_record_pixel function in imagew-gif.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service (heap-based buffer over-read) via…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-9829

Published Apr 5, 2017

coders/sun.c in ImageMagick allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted sun file.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-7379

Published Apr 3, 2017

The PoDoFo::PdfSimpleEncoding::ConvertToEncoding function in PdfEncoding.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (heap-based buffer over-read and…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-7378

Published Apr 3, 2017

The PoDoFo::PdfPainter::ExpandTabs function in PdfPainter.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (heap-based buffer over-read and application cra…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-5923

Published Apr 3, 2017

libyara/grammar.y in YARA 3.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted rule that is mishandled in…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2016-10226

Published Apr 3, 2017

JavaScriptCore in WebKit, as distributed in Safari Technology Preview Release 18, allows remote attackers to cause a denial of service (bitfield out-of-bounds read and application…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2017-2409

Published Apr 2, 2017

An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the "Menus" component. It allows attackers to obtain sensitive information…

CVSS 7.1 · High
Vendor/product tagsBeta · best-effort
Showing 8,851-8,875 of 9,202 CVEsPage 355 of 369