[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256040

 
 

909

 
 

199103

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2019-1237

ID: oval:org.secpod.oval:def:1601018Date: (C)2019-07-30   (M)2023-11-10
Class: PATCHFamily: unix




In PHP imagick extension, writing to an array of values in ImagickKernel::fromMatrix function did not check that the address will be within the allocated array. This could lead to out of bounds write to memory if the function is called with the data controlled by untrusted party

Platform:
Amazon Linux AMI
Product:
php54-pecl-imagick
php55-pecl-imagick
php56-pecl-imagick
php70-pecl-imagick
php71-pecl-imagick
php72-pecl-imagick
Reference:
ALAS-2019-1237
CVE-2019-11037
CVE    1
CVE-2019-11037
CPE    6
cpe:/a:pecl-php:php72-pecl-imagick
cpe:/o:amazon:linux
cpe:/a:pecl-php:php71-pecl-imagick
cpe:/a:pecl-php:php55-pecl-imagick
...

© SecPod Technologies