Description
Buffer overflow in GraphicsMagick and ImageMagick allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c. NOTE: this issue is due to an incomplete patch for CVE-2006-5456.
References (9)
Core 9
Core References
Issue Tracking x_refsource_confirm
https://issues.rpath.com/browse/RPL-1034
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/24196
Third Party Advisory third-party-advisory
x_refsource_secunia
http://secunia.com/advisories/24167
Vendor Advisory vendor-advisory
x_refsource_suse
http://www.novell.com/linux/security/advisories/2007_3_sr.html
Vendor Advisory vendor-advisory
x_refsource_ubuntu
http://www.ubuntu.com/usn/usn-422-1
Third Party Advisory, VDB Entry mailing-list
x_refsource_bugtraq
http://www.securityfocus.com/archive/1/459507/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://www.osvdb.org/31911
Vendor Advisory vendor-advisory
x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDKSA-2007:041
Third Party Advisory vendor-advisory
x_refsource_debian
http://www.debian.org/security/2007/dsa-1260
Scores
EPSS
0.0712
EPSS Percentile
91.6%
Details
Status
published
Products (2)
graphicsmagick/graphicsmagick
imagemagick/imagemagick
6.3.3.4
Published
Feb 12, 2007
Tracked Since
Feb 18, 2026