ZeroHour

CVE-2016-3717

CVSS 3.0
5.5 medium
EPSS
20%p97
Published
()
Modified
Description

The LABEL coder in ImageMagick before 6.9.3-10 and 7.x before 7.0.1-1 allows remote attackers to read arbitrary files via a crafted image.

Vendors
canonicalredhatimagemagick
Products
ubuntu linux, enterprise linux desktop, enterprise linux hpc node, enterprise linux hpc node eus, enterprise linux server, enterprise linux server aus, enterprise linux server eus, enterprise linux server supplementary eus, enterprise linux workstation, imagemagick
Weakness
CWE-200
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.