CVE-2015-8896

Integer truncation issue in coders/pict.c in ImageMagick before 7.0.5-0 allows remote attackers to cause a denial of service (application crash) via a crafted .pict file.
References
Link Resource
http://www.openwall.com/lists/oss-security/2015/10/07/2 Mailing List Patch Third Party Advisory
http://www.openwall.com/lists/oss-security/2015/10/08/3 Mailing List Patch Third Party Advisory
http://www.openwall.com/lists/oss-security/2016/06/02/13 Mailing List Patch Third Party Advisory
http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html Third Party Advisory
http://www.securityfocus.com/bid/91027 Third Party Advisory VDB Entry
https://access.redhat.com/errata/RHSA-2016:1237 Third Party Advisory
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1448803 Issue Tracking Patch Third Party Advisory
https://github.com/ImageMagick/ImageMagick/commit/0f6fc2d5bf8f500820c3dbcf0d23ee14f2d9f734 Issue Tracking Patch Third Party Advisory
http://www.openwall.com/lists/oss-security/2015/10/07/2 Mailing List Patch Third Party Advisory
http://www.openwall.com/lists/oss-security/2015/10/08/3 Mailing List Patch Third Party Advisory
http://www.openwall.com/lists/oss-security/2016/06/02/13 Mailing List Patch Third Party Advisory
http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html Third Party Advisory
http://www.securityfocus.com/bid/91027 Third Party Advisory VDB Entry
https://access.redhat.com/errata/RHSA-2016:1237 Third Party Advisory
https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1448803 Issue Tracking Patch Third Party Advisory
https://github.com/ImageMagick/ImageMagick/commit/0f6fc2d5bf8f500820c3dbcf0d23ee14f2d9f734 Issue Tracking Patch Third Party Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:oracle:linux:6:-:*:*:*:*:*:*
cpe:2.3:o:oracle:linux:7:-:*:*:*:*:*:*

Configuration 3 (hide)

OR cpe:2.3:o:redhat:enterprise_linux_desktop:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_desktop:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_eus:7.2:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_eus:7.3:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_eus:7.4:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_eus:7.5:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_eus:7.6:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_eus:7.7:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.2:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.3:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.4:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.6:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_aus:7.7:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.2:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.3:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.6:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server_tus:7.7:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*

History

21 Nov 2024, 02:39

Type Values Removed Values Added
References () http://www.openwall.com/lists/oss-security/2015/10/07/2 - Mailing List, Patch, Third Party Advisory () http://www.openwall.com/lists/oss-security/2015/10/07/2 - Mailing List, Patch, Third Party Advisory
References () http://www.openwall.com/lists/oss-security/2015/10/08/3 - Mailing List, Patch, Third Party Advisory () http://www.openwall.com/lists/oss-security/2015/10/08/3 - Mailing List, Patch, Third Party Advisory
References () http://www.openwall.com/lists/oss-security/2016/06/02/13 - Mailing List, Patch, Third Party Advisory () http://www.openwall.com/lists/oss-security/2016/06/02/13 - Mailing List, Patch, Third Party Advisory
References () http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html - Third Party Advisory () http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html - Third Party Advisory
References () http://www.securityfocus.com/bid/91027 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/91027 - Third Party Advisory, VDB Entry
References () https://access.redhat.com/errata/RHSA-2016:1237 - Third Party Advisory () https://access.redhat.com/errata/RHSA-2016:1237 - Third Party Advisory
References () https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1448803 - Issue Tracking, Patch, Third Party Advisory () https://bugs.launchpad.net/ubuntu/+source/imagemagick/+bug/1448803 - Issue Tracking, Patch, Third Party Advisory
References () https://github.com/ImageMagick/ImageMagick/commit/0f6fc2d5bf8f500820c3dbcf0d23ee14f2d9f734 - Issue Tracking, Patch, Third Party Advisory () https://github.com/ImageMagick/ImageMagick/commit/0f6fc2d5bf8f500820c3dbcf0d23ee14f2d9f734 - Issue Tracking, Patch, Third Party Advisory

Information

Published : 2017-03-15 19:59

Updated : 2025-04-20 01:37


NVD link : CVE-2015-8896

Mitre link : CVE-2015-8896

CVE.ORG link : CVE-2015-8896


JSON object : View

Products Affected

redhat

  • enterprise_linux_server_tus
  • enterprise_linux_workstation
  • enterprise_linux_server
  • enterprise_linux_desktop
  • enterprise_linux_server_aus
  • enterprise_linux_eus

imagemagick

  • imagemagick

oracle

  • linux