Vulnerability Name:

CVE-2022-0284 (CCN-235008)

Assigned:2022-08-29
Published:2022-08-29
Updated:2022-09-01
Summary:A heap-based-buffer-over-read flaw was found in ImageMagick's GetPixelAlpha() function of 'pixel-accessor.h'. This vulnerability is triggered when an attacker passes a specially crafted Tagged Image File Format (TIFF) image to convert it into a PICON file format. This issue can potentially lead to a denial of service and information disclosure.
CVSS v3 Severity:7.1 High (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H)
6.2 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): None
Availibility (A): High
5.1 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L)
4.5 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:3.6 Low (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): None
Availibility (A): Partial
Vulnerability Type:CWE-125
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2022-0284

Source: MISC
Type: Issue Tracking, Third Party Advisory
https://access.redhat.com/security/cve/CVE-2022-0284

Source: CCN
Type: Red Hat Bugzilla - Bug 2045943
(CVE-2022-0284) - CVE-2022-0284 ImageMagick: Heap buffer overread in GetPixelAlpha() declared in MagickCore/pixel-accessor.h

Source: MISC
Type: Issue Tracking, Patch, Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=2045943

Source: XF
Type: UNKNOWN
imagemagick-cve20220284-dos(235008)

Source: CCN
Type: ImageMagick GIT Repository
Heap Buffer Overflow #4729

Source: MISC
Type: Patch, Third Party Advisory
https://github.com/ImageMagick/ImageMagick/commit/e50f19fd73c792ebe912df8ab83aa51a243a3da7

Source: MISC
Type: Exploit, Issue Tracking, Third Party Advisory
https://github.com/ImageMagick/ImageMagick/issues/4729

Source: CCN
Type: Mend Vulnerability Database
CVE-2022-0284

Vulnerable Configuration:Configuration 1:
  • cpe:/a:imagemagick:imagemagick:*:*:*:*:*:*:*:* (Version < 7.1.0-20)

  • Configuration CCN 1:
  • cpe:/a:imagemagick:imagemagick:-:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:8055
    P
    perl-PerlMagick-7.1.0.9-150400.6.18.1 on GA media (Moderate)
    2023-06-20
    oval:org.opensuse.security:def:7867
    P
    ImageMagick-7.1.0.9-150400.6.18.1 on GA media (Moderate)
    2023-06-12
    oval:org.opensuse.security:def:3251
    P
    libshibsp-lite6-2.5.5-6.3.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:3420
    P
    MozillaFirefox-68.1.0-109.92.1 on GA media (Moderate)
    2022-06-28
    oval:org.opensuse.security:def:95050
    P
    perl-PerlMagick-7.1.0.9-150400.4.7 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:94881
    P
    ImageMagick-7.1.0.9-150400.4.7 on GA media (Moderate)
    2022-06-22
    oval:org.opensuse.security:def:101762
    P
    Security update for ImageMagick (Moderate)
    2022-02-21
    oval:org.opensuse.security:def:119117
    P
    Security update for ImageMagick (Moderate)
    2022-02-21
    oval:org.opensuse.security:def:101852
    P
    Security update for ImageMagick (Moderate)
    2022-02-21
    oval:org.opensuse.security:def:1084
    P
    Security update for ImageMagick (Moderate)
    2022-02-21
    oval:org.opensuse.security:def:1190
    P
    Security update for ImageMagick (Moderate)
    2022-02-21
    BACK
    imagemagick imagemagick *
    imagemagick imagemagick -