CVE
- Id
- 53502
- CVE No.
- CVE-2012-0259
- Status
- Candidate
- Description
- The GetEXIFProperty function in magick/property.c in ImageMagick before 6.7.6-3 allows remote attackers to cause a denial of service (crash) via a zero value in the component count of an EXIF XResolution tag in a JPEG file, which triggers an out-of-bounds read.
- Phase
- Assigned (20111221)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
564716 | 53502 | CVE-2012-0259 | MISC:http://www.cert.fi/en/reports/2012/vulnerability635606.html | View |
564717 | 53502 | CVE-2012-0259 | MISC:https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-0259 | View |
564718 | 53502 | CVE-2012-0259 | CONFIRM:http://www.imagemagick.org/discourse-server/viewtopic.php?f=4&t=20629 | View |
564719 | 53502 | CVE-2012-0259 | DEBIAN:DSA-2462 | View |
564720 | 53502 | CVE-2012-0259 | URL:http://www.debian.org/security/2012/dsa-2462 | View |
564721 | 53502 | CVE-2012-0259 | REDHAT:RHSA-2012:0544 | View |
564722 | 53502 | CVE-2012-0259 | URL:http://rhn.redhat.com/errata/RHSA-2012-0544.html | View |
564723 | 53502 | CVE-2012-0259 | SUSE:openSUSE-SU-2012:0692 | View |
564724 | 53502 | CVE-2012-0259 | URL:http://lists.opensuse.org/opensuse-updates/2012-06/msg00001.html | View |
564725 | 53502 | CVE-2012-0259 | UBUNTU:USN-1435-1 | View |
564726 | 53502 | CVE-2012-0259 | URL:http://ubuntu.com/usn/usn-1435-1 | View |
564727 | 53502 | CVE-2012-0259 | BID:52898 | View |
564728 | 53502 | CVE-2012-0259 | URL:http://www.securityfocus.com/bid/52898 | View |
564729 | 53502 | CVE-2012-0259 | OSVDB:81021 | View |
564730 | 53502 | CVE-2012-0259 | URL:http://www.osvdb.org/81021 | View |
564731 | 53502 | CVE-2012-0259 | SECTRACK:1027032 | View |
564732 | 53502 | CVE-2012-0259 | URL:http://www.securitytracker.com/id?1027032 | View |
564733 | 53502 | CVE-2012-0259 | SECUNIA:48679 | View |
564734 | 53502 | CVE-2012-0259 | URL:http://secunia.com/advisories/48679 | View |
564735 | 53502 | CVE-2012-0259 | SECUNIA:48974 | View |
564736 | 53502 | CVE-2012-0259 | URL:http://secunia.com/advisories/48974 | View |
564737 | 53502 | CVE-2012-0259 | SECUNIA:49043 | View |
564738 | 53502 | CVE-2012-0259 | URL:http://secunia.com/advisories/49043 | View |
564739 | 53502 | CVE-2012-0259 | SECUNIA:49063 | View |
564740 | 53502 | CVE-2012-0259 | URL:http://secunia.com/advisories/49063 | View |
564741 | 53502 | CVE-2012-0259 | SECUNIA:49317 | View |
564742 | 53502 | CVE-2012-0259 | URL:http://secunia.com/advisories/49317 | View |
564743 | 53502 | CVE-2012-0259 | SECUNIA:55035 | View |
564744 | 53502 | CVE-2012-0259 | URL:http://secunia.com/advisories/55035 | View |
564745 | 53502 | CVE-2012-0259 | XF:imagemagick-jpegexif-dos(74657) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
30397 | JVNDB-2012-006105 | op5 Monitor および op5 Appliance における脆弱性 | op5 Monitor および op5 Appliance は、セッション Cookie を適切に管理しないため、不特定の影響を受ける脆弱性が存在します。 | CVE-2012-0264 | 53502 | 10 | http://jvndb.jvn.jp/ja/contents/2012/JVNDB-2012-006105.html | View |