CVE-2006-5456 | Date: (C)2006-10-23 (M)2018-02-19 |
Multiple buffer overflows in GraphicsMagick before 1.1.7 and ImageMagick 6.0.7 allow user-assisted attackers to cause a denial of service and possibly execute arbitrary code via (1) a DCM image that is not properly handled by the ReadDCMImage function in coders/dcm.c, or (2) a PALM image that is not properly handled by the ReadPALMImage function in coders/palm.c.
CVSS Score and Metrics +CVSS Score and Metrics -CVSS V3 Severity: | CVSS V2 Severity: |
CVSS Score : | CVSS Score : 5.1 |
Exploit Score: | Exploit Score: 4.9 |
Impact Score: | Impact Score: 6.4 |
|
CVSS V3 Metrics: | CVSS V2 Metrics: |
Attack Vector: | Access Vector: NETWORK |
Attack Complexity: | Access Complexity: HIGH |
Privileges Required: | Authentication: NONE |
User Interaction: | Confidentiality: PARTIAL |
Scope: | Integrity: PARTIAL |
Confidentiality: | Availability: PARTIAL |
Integrity: | |
Availability: | |
| |