CVE-2016-8866
15.02.2017, 19:59
The AcquireMagickMemory function in MagickCore/memory.c in ImageMagick 7.0.3.3 before 7.0.3.8 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-8862.Enginsight
| Vendor | Product | Version |
|---|---|---|
| imagemagick | imagemagick | 𝑥 < 6.9.6-6 |
| imagemagick | imagemagick | 7.0.0-0 ≤ 𝑥 ≤ 7.0.3-7 |
| opensuse | leap | 42.1 |
| opensuse | leap | 42.2 |
| opensuse | opensuse | 13.2 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References