First published: Tue May 24 2005(Updated: )
The XWD Decoder in ImageMagick before 6.2.2.3, and GraphicsMagick before 1.1.6-r1, allows remote attackers to cause a denial of service (infinite loop) via an image with a zero color mask.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ImageMagick | =1.0 | |
ImageMagick | =1.0.6 | |
ImageMagick | =1.1 | |
ImageMagick | =1.1.3 | |
ImageMagick | =1.1.4 | |
ImageMagick | =1.1.5 | |
ImageMagick | =1.1.6 | |
ImageMagick | =5.3.3 | |
ImageMagick | =5.3.8 | |
ImageMagick | =5.4.3 | |
ImageMagick | =5.4.4.5 | |
ImageMagick | =5.4.7 | |
ImageMagick | =5.4.8 | |
ImageMagick | =5.4.8.2.1.1.0 | |
ImageMagick | =5.5.3.2.1.2.0 | |
ImageMagick | =5.5.4 | |
ImageMagick | =5.5.6 | |
ImageMagick | =5.5.6.0_2003-04-09 | |
ImageMagick | =5.5.7 | |
ImageMagick | =6.0 | |
ImageMagick | =6.0.1 | |
ImageMagick | =6.0.2 | |
ImageMagick | =6.0.2.5 | |
ImageMagick | =6.0.3 | |
ImageMagick | =6.0.4 | |
ImageMagick | =6.0.5 | |
ImageMagick | =6.0.6 | |
ImageMagick | =6.0.7 | |
ImageMagick | =6.0.8 | |
ImageMagick | =6.1 | |
ImageMagick | =6.1.1.6 | |
ImageMagick | =6.1.2 | |
ImageMagick | =6.1.3 | |
ImageMagick | =6.1.4 | |
ImageMagick | =6.1.5 | |
ImageMagick | =6.1.6 | |
ImageMagick | =6.1.7 | |
ImageMagick | =6.1.8 | |
ImageMagick | =6.2 | |
ImageMagick | =6.2.0.4 | |
ImageMagick | =6.2.0.7 | |
ImageMagick | =6.2.1 | |
ImageMagick | =6.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1739 has a severity level associated with a denial of service risk due to an infinite loop.
To fix CVE-2005-1739, upgrade ImageMagick to version 6.2.2.3 or later and GraphicsMagick to version 1.1.6-r1 or later.
CVE-2005-1739 affects ImageMagick versions prior to 6.2.2.3 and GraphicsMagick versions prior to 1.1.6-r1.
Temporarily disabling processing of XWD images can serve as a workaround until updates are applied for CVE-2005-1739.
CVE-2005-1739 enables a denial of service attack by causing an infinite loop when processing images with a zero color mask.