Mandriva Linux Security Advisory 2012-077

newsbot

newsbot

RSS Feed
Mandriva Linux Security Advisory 2012-077 - Untrusted search path vulnerability in configure.c in ImageMagick before 6.6.5-5, when MAGICKCORE_INSTALLED_SUPPORT is defined, allows local users to gain privileges via a Trojan horse configuration file in the current working directory. A flaw was found in the way ImageMagick processed images with malformed Exchangeable image file format metadata. An attacker could create a specially-crafted image file that, when opened by a victim, would cause ImageMagick to crash or, potentially, execute arbitrary code. A denial of service flaw was found in the way ImageMagick processed images with malformed Exif metadata. An attacker could create a specially-crafted image file that, when opened by a victim, could cause ImageMagick to enter an infinite loop. Various other issues have also been addressed.

Weiterlesen...
 

Ähnliche Themen

Mandriva Linux Security Advisory 2012-078

Red Hat Security Advisory 2012-1590-01

Red Hat Security Advisory 2012-0544-01

Red Hat Security Advisory 2012-0545-01

Mandriva Linux Security Advisory 2012-184

Zurück
Oben