CVE-2019-19949
24.12.2019, 01:15
In ImageMagick 7.0.8-43 Q16, there is a heap-based buffer over-read in the function WritePNGImage of coders/png.c, related to Magick_png_write_raw_profile and LocaleNCompare.Enginsight
| Vendor | Product | Version |
|---|---|---|
| imagemagick | imagemagick | 6.9.9-33 ≤ 𝑥 < 6.9.10-43 |
| imagemagick | imagemagick | 7.0.7-23 ≤ 𝑥 < 7.0.8-43 |
| debian | debian_linux | 8.0 |
| debian | debian_linux | 9.0 |
| debian | debian_linux | 10.0 |
| canonical | ubuntu_linux | 20.04 |
| opensuse | leap | 15.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| imagemagick |
|
Common Weakness Enumeration
References