Description
ImageMagick before 6.3.5-9 allows context-dependent attackers to cause a denial of service via a crafted image file that triggers (1) an infinite loop in the ReadDCMImage function, related to ReadBlobByte function calls; or (2) an infinite loop in the ReadXCFImage function, related to ReadBlobMSBLong function calls.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1858-1 | New imagemagick packages fix several vulnerabilities |
Debian DSA |
DSA-1903-1 | New graphicsmagick packages fix several vulnerabilities |
EUVD |
EUVD-2007-4966 | ImageMagick before 6.3.5-9 allows context-dependent attackers to cause a denial of service via a crafted image file that triggers (1) an infinite loop in the ReadDCMImage function, related to ReadBlobByte function calls; or (2) an infinite loop in the ReadXCFImage function, related to ReadBlobMSBLong function calls. |
Ubuntu USN |
USN-523-1 | ImageMagick vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T15:17:28.182Z
Reserved: 2007-09-19T00:00:00.000Z
Link: CVE-2007-4985
No data.
Status : Modified
Published: 2007-09-24T22:17:00.000
Modified: 2026-04-23T00:35:47.467
Link: CVE-2007-4985
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN