PublicDate: 2007-04-02 22:19:00 UTC Candidate: CVE-2007-1797 References: https://ubuntu.com/security/notices/USN-481-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-1797 Description: Multiple integer overflows in ImageMagick before 6.3.3-5 allow remote attackers to execute arbitrary code via (1) a crafted DCM image, which results in a heap-based overflow in the ReadDCMImage function, or (2) the (a) colors or (b) comments field in a crafted XWD image, which results in a heap-based overflow in the ReadXWDImage function, different issues than CVE-2007-1667. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_graphicsmagick: DNE edgy_graphicsmagick: needed feisty_graphicsmagick: needed (reached end-of-life) gutsy_graphicsmagick: released (1.1.8-1) hardy_graphicsmagick: released (1.1.8-1) devel_graphicsmagick: released (1.1.8-1) dapper_imagemagick: released (6.2.4.5-0.6ubuntu0.6) edgy_imagemagick: released (6.2.4.5.dfsg1-0.10ubuntu0.3) feisty_imagemagick: released (6.2.4.5.dfsg1-0.14ubuntu0.1) gutsy_imagemagick: released (6.2.4.5.dfsg1-1ubuntu1) hardy_imagemagick: released (6.2.4.5.dfsg1-1ubuntu1) devel_imagemagick: released (6.2.4.5.dfsg1-1ubuntu1) upstream_graphicsmagick: needs-triage upstream_imagemagick: needs-triage