CVE-2006-5868: Buffer Overflow
Published Nov 22, 2006
·Updated
Multiple buffer overflows in Imagemagick 6.0 before 6.0.6.2, and 6.2 before 6.2.4.5, has unknown impact and user-assisted attack vectors via a crafted SGI image.
Affected Software
6 affected components
ImageMagick ImageMagick>=6.0<6.0.6.2
ImageMagick ImageMagick>=6.2<6.2.4.5
Debian Debian Linux=3.1
Debian Debian Linux=4.0
Canonical Ubuntu Linux=6.06
Canonical Ubuntu Linux=5.10
Event History
Nov 22, 2006
CVE Published
01:07 AM
Data Sourced
via NVD·01:07 AM
DescriptionSeverityAffected Software
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-5868?
CVE-2006-5868 has an unknown impact but involves multiple buffer overflows in specific versions of ImageMagick.
2
How do I fix CVE-2006-5868?
To fix CVE-2006-5868, upgrade to ImageMagick version 6.0.6.2 or 6.2.4.5 or later.
3
What software is affected by CVE-2006-5868?
CVE-2006-5868 affects ImageMagick versions prior to 6.0.6.2 and 6.2 before 6.2.4.5, as well as specific Debian and Ubuntu versions.
4
What types of attacks are possible with CVE-2006-5868?
CVE-2006-5868 allows for user-assisted attack vectors via crafted SGI images, leading to potential arbitrary code execution.
5
Is CVE-2006-5868 a serious vulnerability?
While CVE-2006-5868's impact is unknown, the ability to exploit buffer overflows always poses significant risks.