CVE-2017-18272
18.05.2018, 19:29
In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-25, there is a use-after-free in ReadOneMNGImage in coders/png.c, which allows attackers to cause a denial of service via a crafted MNG image file that is mishandled in an MngInfoDiscardObject call.Enginsight
| Vendor | Product | Version |
|---|---|---|
| imagemagick | imagemagick | 7.0.7-16 ≤ 𝑥 < 7.0.7-21 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| imagemagick |
|
Ubuntu Releases
Common Weakness Enumeration