CVE-2010-4167 - CVE House
Back to Database
Status published Medium CVE-2010-4167

Untrusted search path vulnerability in configure.c in ImageMagick before 6.6.5-5,...

Vulnerability Description

Untrusted search path vulnerability in configure.c in ImageMagick before 6.6.5-5, when MAGICKCORE_INSTALLED_SUPPORT is defined, allows local users to gain privileges via a Trojan horse configuration file in the current working directory.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2010-4167

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

imagemagick

View all reports →

Affected Software

imagemagick
Vulnerable Versions:
0, 6.3.1-6, 6.3.1-7, 6.3.2, 6.3.2-1, 6.3.2-2, 6.3.2-3, 6.3.2-4, 6.3.2-5, 6.3.2-6, 6.3.2-7, 6.3.2-8, 6.3.3, 6.3.3-1, 6.3.3-2, 6.3.3-3, 6.3.3-4, 6.3.3-5, 6.3.3-6, 6.3.3-7, 6.3.3-8, 6.3.3-9, 6.3.4, 6.3.4-1, 6.3.4-2, 6.3.4-3, 6.3.4-4, 6.3.4-5, 6.3.4-6, 6.3.4-8, 6.3.4-9, 6.3.4-10, 6.3.5, 6.3.5-4, 6.3.5-5, 6.3.5-6, 6.3.5-7, 6.3.5-9, 6.3.5-10, 6.3.6, 6.3.6-1, 6.3.6-2, 6.3.6-3, 6.3.6-4, 6.3.6-5, 6.3.6-6, 6.3.6-7, 6.3.6-8, 6.3.6-9, 6.3.6-10, 6.3.7, 6.3.7-1, 6.3.7-2, 6.3.7-3, 6.3.7-4, 6.3.7-5, 6.3.7-7, 6.3.7-9, 6.3.7-10, 6.3.8, 6.3.8-1, 6.3.8-2, 6.3.8-3, 6.3.8-5, 6.3.8-6, 6.3.8-7, 6.3.8-9, 6.3.8-10, 6.3.9, 6.3.9-1, 6.3.9-2, 6.3.9-4, 6.3.9-5, 6.3.9-6, 6.3.9-7, 6.3.9-8, 6.3.9-9, 6.3.9-10, 6.4.0, 6.4.0-1, 6.4.0-4, 6.4.0-5, 6.4.0-6, 6.4.0-7, 6.4.0-8, 6.4.0-10, 6.4.0-11, 6.4.1, 6.4.1-1, 6.4.1-2, 6.4.1-3, 6.4.1-4, 6.4.1-5, 6.4.1-6, 6.4.1-7, 6.4.1-8, 6.4.1-9, 6.4.2, 6.4.2-1, 6.4.2-2, 6.4.2-4, 6.4.2-5, 6.4.2-6, 6.4.2-7, 6.4.2-8, 6.4.2-9, 6.4.2-10, 6.4.3, 6.4.3-1, 6.4.3-2, 6.4.3-3, 6.4.3-5, 6.4.3-6, 6.4.3-7, 6.4.3-8, 6.4.3-10, 6.4.4, 6.4.4-1, 6.4.4-3, 6.4.4-5, 6.4.4-7, 6.4.4-8, 6.4.5, 6.4.5-1, 6.4.5-2, 6.4.5-3, 6.4.5-4, 6.4.5-6, 6.4.5-7, 6.4.5-9, 6.4.6, 6.4.6-1, 6.4.6-2, 6.4.6-3, 6.4.6-4, 6.4.6-5, 6.4.6-6, 6.4.6-8, 6.4.6-9, 6.4.7-1, 6.4.7-2, 6.4.7-3, 6.4.7-4, 6.4.7-5, 6.4.7-6, 6.4.7-7, 6.4.7-8, 6.4.7-9, 6.4.7-10, 6.4.8, 6.4.8-1, 6.4.8-2, 6.4.8-3, 6.4.8-4, 6.4.8-5, 6.4.8-6, 6.4.8-7, 6.4.8-8, 6.4.8-9, 6.4.8-10, 6.4.9, 6.4.9-2, 6.4.9-3, 6.4.9-5, 6.4.9-7, 6.4.9-8, 6.4.9-9, 6.4.9-10, 6.5.0, 6.5.0-1, 6.5.0-2, 6.5.0-3, 6.5.0-4, 6.5.0-5, 6.5.0-6, 6.5.0-7, 6.5.0-8, 6.5.0-9, 6.5.0-10, 6.5.1, 6.5.1-1, 6.5.1-2, 6.5.1-3, 6.5.1-4, 6.5.1-5, 6.5.1-6, 6.5.1-7, 6.5.1-9, 6.5.1-10, 6.5.2, 6.5.2-1, 6.5.2-2, 6.5.2-3, 6.5.2-4, 6.5.2-5, 6.5.2-6, 6.5.2-7, 6.5.2-8, 6.5.2-9, 6.5.2-10, 6.5.3, 6.5.3-1, 6.5.3-3, 6.5.3-4, 6.5.3-5, 6.5.3-6, 6.5.3-7, 6.5.3-8, 6.5.3-10, 6.5.4, 6.5.4-1, 6.5.4-2, 6.5.4-3, 6.5.4-4, 6.5.4-5, 6.5.4-6, 6.5.4-7, 6.5.4-8, 6.5.4-9, 6.5.4-10, 6.5.5, 6.5.5-1, 6.5.5-2, 6.5.5-3, 6.5.5-4, 6.5.5-5, 6.5.5-6, 6.5.5-7, 6.5.5-8, 6.5.5-9, 6.5.5-10, 6.5.6, 6.5.6-2, 6.5.6-3, 6.5.6-4, 6.5.6-5, 6.5.6-6, 6.5.6-7, 6.5.6-8, 6.5.6-9, 6.5.6-10, 6.5.7, 6.5.7-1, 6.5.7-2, 6.5.7-3, 6.5.7-4, 6.5.7-5, 6.5.7-6, 6.5.7-7, 6.5.7-8, 6.5.7-9, 6.5.8, 6.5.8-1, 6.5.8-2, 6.5.8-3, 6.5.8-4, 6.5.8-5, 6.5.8-6, 6.5.8-7, 6.5.8-8, 6.5.8-9, 6.5.9, 6.5.9-1, 6.5.9-2, 6.5.9-3, 6.5.9-4, 6.5.9-5, 6.5.9-6, 6.5.9-7, 6.5.9-8, 6.5.9-10, 6.6.0, 6.6.0-1, 6.6.0-2, 6.6.0-4, 6.6.0-5, 6.6.0-6, 6.6.0-7, 6.6.0-8, 6.6.0-9, 6.6.0-10, 6.6.1, 6.6.1-1, 6.6.1-2, 6.6.1-3, 6.6.1-4, 6.6.1-5, 6.6.1-6, 6.6.1-7, 6.6.1-8, 6.6.1-9, 6.6.1-10, 6.6.2, 6.6.2-1, 6.6.2-2, 6.6.2-3, 6.6.2-4, 6.6.2-5, 6.6.2-6, 6.6.2-7, 6.6.2-8, 6.6.2-9, 6.6.2-10, 6.6.3, 6.6.3-1, 6.6.3-2, 6.6.3-3, 6.6.3-4, 6.6.3-5, 6.6.3-6, 6.6.3-7, 6.6.3-10, 6.6.4, 6.6.4-1, 6.6.4-2, 6.6.4-4, 6.6.4-5, 6.6.4-6, 6.6.4-7, 6.6.4-8, 6.6.4-9, 6.6.4-10, 6.6.5, 6.6.5-1, 6.6.5-2, 6.6.5-3

Timeline

Official Publish: November 22nd, 2010
Last Modified: August 7th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.