CVE-2008-6072: Medium severity GraphicsMagick Graphicsmagick vulnerability
Multiple unspecified vulnerabilities in GraphicsMagick before 1.1.14, and 1.2.x before 1.2.3, allow remote attackers to cause a denial of service (crash) via unspecified vectors in (1) XCF and (2) CINEON images.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2008-6072?
The severity of CVE-2008-6072 is categorized as a denial of service vulnerability that can cause crashes in affected versions of GraphicsMagick.
How do I fix CVE-2008-6072?
To fix CVE-2008-6072, update GraphicsMagick to version 1.1.14 or later for the 1.1.x series, or to 1.2.3 or later for the 1.2.x series.
Which versions of GraphicsMagick are affected by CVE-2008-6072?
GraphicsMagick versions before 1.1.14 and 1.2.x versions before 1.2.3 are vulnerable to CVE-2008-6072.
What types of files can trigger the vulnerability in CVE-2008-6072?
CVE-2008-6072 can be triggered by vulnerabilities within XCF and CINEON image formats.
Can CVE-2008-6072 be exploited remotely?
Yes, CVE-2008-6072 allows remote attackers to exploit the vulnerability to cause a denial of service.