ImageMagick.PNG.Image.Multiple.Vulnerabilities
Description
This indicates an attack attempt against a Denial of Service or Information Disclosure vulnerability in ImageMagick.
The vulnerability is caused by improper validation of PNG image files. A remote attacker can exploit this vulnerability by sending a crafted file. Successfully exploiting this vulnerability could result in a denial of service or disclosure of sensitive information on the affected system.
Affected Products
ImageMagick 7.1.0-49
Impact
Denial of Service: Remote attackers can crash vulnerable systems.
Recommended Actions
Apply the most recent upgrade or patch from the vendor.
https://imagemagick.org/script/changelog.php
Telemetry
Coverage
IPS (Regular DB) | |
IPS (Extended DB) |
Version Updates
Date | Version | Detail |
---|---|---|
2023-06-26 | 24.589 | Sig Added |
2023-03-14 | 23.511 | Default_action:pass:drop |
2023-03-07 | 23.507 | Sig Added |
2023-02-14 | 22.495 |