|
208211
|
3.3 |
LOW
Local
|
imagemagick redhat debian
|
imagemagick enterprise_linux debian_linux
|
A flaw was found in ImageMagick in MagickCore/segment.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero.…
|
CWE-369
Divide By Zero
|
CVE-2020-27765
|
2024-11-21 14:21 |
2020-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208212
|
3.3 |
LOW
Local
|
imagemagick redhat debian
|
imagemagick enterprise_linux debian_linux
|
A flaw was found in ImageMagick in MagickCore/quantum.h. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the ran…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-27767
|
2024-11-21 14:21 |
2020-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208213
|
6.8 |
MEDIUM
Local
|
canonical
|
snapcraft ubuntu_linux
|
In some conditions, a snap package built by snapcraft includes the current directory in LD_LIBRARY_PATH, allowing a malicious snap to gain code execution within the context of another snap if both pl…
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2020-27348
|
2024-11-21 14:21 |
2020-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208214
|
6.1 |
MEDIUM
Network
|
lxml redhat debian fedoraproject netapp oracle
|
lxml enterprise_linux software_collections debian_linux fedora snapcenter communications_offline_mediation_controller zfs_storage_appliance_kit
|
A XSS vulnerability was discovered in python-lxml's clean module. The module's parser didn't properly imitate browsers, which caused different behaviors between the sanitizer and the user's page. A r…
|
-
|
CVE-2020-27783
|
2024-11-21 14:21 |
2020-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208215
|
7.5 |
HIGH
Network
|
freedesktop redhat debian
|
poppler enterprise_linux debian_linux
|
A flaw was found in Poppler in the way certain PDF files were converted into HTML. A remote attacker could exploit this flaw by providing a malicious PDF file that, when processed by the 'pdftohtml' …
|
CWE-824
Access of Uninitialized Pointer
|
CVE-2020-27778
|
2024-11-21 14:21 |
2020-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208216
|
3.3 |
LOW
Local
|
imagemagick debian
|
imagemagick debian_linux
|
In /MagickCore/statistic.c, there are several areas in ApplyEvaluateOperator() where a size_t cast should have been a ssize_t cast, which causes out-of-range values under some circumstances when a cr…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-27764
|
2024-11-21 14:21 |
2020-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208217
|
3.3 |
LOW
Local
|
imagemagick debian
|
imagemagick debian_linux
|
A flaw was found in ImageMagick in MagickCore/resize.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. …
|
CWE-369
Divide By Zero
|
CVE-2020-27763
|
2024-11-21 14:21 |
2020-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208218
|
5.5 |
MEDIUM
Local
|
imagemagick debian
|
imagemagick debian_linux
|
A flaw was found in ImageMagick in coders/hdr.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of values outside the range of ty…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-27762
|
2024-11-21 14:21 |
2020-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208219
|
3.3 |
LOW
Local
|
imagemagick debian
|
imagemagick debian_linux
|
WritePALMImage() in /coders/palm.c used size_t casts in several areas of a calculation which could lead to values outside the range of representable type `unsigned long` undefined behavior when a cra…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2020-27761
|
2024-11-21 14:21 |
2020-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
208220
|
5.5 |
MEDIUM
Local
|
imagemagick debian
|
imagemagick debian_linux
|
In `GammaImage()` of /MagickCore/enhance.c, depending on the `gamma` value, it's possible to trigger a divide-by-zero condition when a crafted input file is processed by ImageMagick. This could lead …
|
CWE-369
Divide By Zero
|
CVE-2020-27760
|
2024-11-21 14:21 |
2020-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|