Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Eero Häkkinen

#36795de 56,334
7.5CVSS total
Vulnerabilidades · 1
PT-2006-3401
7.5
2006-05-18
Imagemagick · Imagemagick · CVE-2006-2440
**Name of the Vulnerable Software and Affected Versions** ImageMagick version 6.0.6.2 **Description** A heap-based buffer overflow issue exists in the libMagick component. This issue might allow attackers to execute arbitrary code via an image index array that triggers the overflow during filename glob expansion by the ExpandFilenames function. **Recommendations** For ImageMagick version 6.0.6.2, consider updating to a newer version to mitigate the risk of exploitation. As a temporary workaround, restrict the use of the ExpandFilenames function until a patch is available.