CVE-2007-0770
imagemagick
EPSS 5.4%
描述
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
如何修補 CVE-2007-0770
要修補 CVE-2007-0770,請將受影響套件升級到下列已修補版本。
- Debian/graphicsmagick—升級至 1.1.7-12 或更新版本
- Debian/imagemagick—升級至 7:6.2.4.5.dfsg1-0.14 或更新版本
- Debian/imagemagick—升級至 6:6.0.6.2-2.9 或更新版本
- —升級至 6:6.0.6.2-2.9 或更新版本
CVE-2007-0770 正在被利用嗎?
中等 — EPSS 為 5.4%,可持續追蹤但非最高優先。
受影響套件(4)
- from 0, < 1.1.7-12
- from 0, < 7:6.2.4.5.dfsg1-0.14
- from 0, < 6:6.0.6.2-2.9
- from 0, < 6:6.0.6.2-2.9