CVE-2023-1289
MEDIUM5.5EPSS 0.11%ImageMagick: Specially crafted SVG leads to segmentation fault and generate trash files in "/tmp", possible to leverage DoS
描述
A vulnerability was discovered in ImageMagick where a specially created SVG file loads itself and causes a segmentation fault. This flaw allows a remote attacker to pass a specially crafted SVG file that leads to a segmentation fault, generating many trash files in "/tmp," resulting in a denial of service. When ImageMagick crashes, it generates a lot of trash files. These trash files can be large if the SVG file contains many render actions. In a denial of service attack, if a remote attacker uploads an SVG file of size t, ImageMagick generates files of size 103*t. If an attacker uploads a 100M SVG, the server will generate about 10G.
受影響套件(21)
- Debian/imagemagickfrom 0, < 8:6.9.10.23+dfsg-2.1+deb10u6
- Debian/imagemagickfrom 0, < 8:6.9.11.60+dfsg-1.3+deb11u3
- NuGet/Magick.NET-Q16-AnyCPUfrom 0, < 13.0.0
- NuGet/Magick.NET-Q16-arm64from 0, < 13.0.0
- NuGet/Magick.NET-Q16-HDRI-AnyCPUfrom 0, < 13.0.0
- NuGet/Magick.NET-Q16-HDRI-arm64from 0, < 13.0.0
- NuGet/Magick.NET-Q16-HDRI-OpenMP-arm64from 0, < 13.0.0
- NuGet/Magick.NET-Q16-HDRI-OpenMP-x64from 0, < 13.0.0
- NuGet/Magick.NET-Q16-HDRI-x64from 0, < 13.0.0
- NuGet/Magick.NET-Q16-HDRI-x86from 0, < 13.0.0
- NuGet/Magick.NET-Q16-OpenMP-arm64from 0, < 13.0.0
- NuGet/Magick.NET-Q16-OpenMP-x64from 0, < 13.0.0
- NuGet/Magick.NET-Q16-OpenMP-x86from 0, < 13.0.0
- NuGet/Magick.NET-Q16-x64from 0, < 13.0.0
- NuGet/Magick.NET-Q16-x86from 0, < 13.0.0
- NuGet/Magick.NET-Q8-AnyCPUfrom 0, < 13.0.0
- NuGet/Magick.NET-Q8-arm64from 0, < 13.0.0
- NuGet/Magick.NET-Q8-OpenMP-arm64from 0, < 13.0.0
- NuGet/Magick.NET-Q8-OpenMP-x64from 0, < 13.0.0
- NuGet/Magick.NET-Q8-x64from 0, < 13.0.0
- NuGet/Magick.NET-Q8-x86from 0, < 13.0.0
CVSS 分數
| 來源 | 版本 | 嚴重程度 | 向量 |
|---|---|---|---|
| osv | CVSS 3.1 | MEDIUM5.5 | CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
參考連結(7)
- ADVISORYhttps://nvd.nist.gov/vuln/detail/CVE-2023-1289
- ADVISORYhttps://security-tracker.debian.org/tracker/CVE-2023-1289
- PATCHhttps://github.com/ImageMagick/ImageMagick
- WEBhttps://bugzilla.redhat.com/show_bug.cgi?id=2176858
- WEBhttps://github.com/ImageMagick/ImageMagick/commit/c5b23cbf2119540725e6dc81f4deb25798ead6a4
- WEBhttps://github.com/ImageMagick/ImageMagick/security/advisories/GHSA-j96m-mjp6-99xr
- WEBhttps://lists.debian.org/debian-lts-announce/2024/02/msg00007.html