ZeroHour

CVE-2017-14739

CVSS 3.0
7.5 high
EPSS
3%p87
Published
()
Modified
Description

The AcquireResampleFilterThreadSet function in magick/resample-private.h in ImageMagick 7.0.7-4 mishandles failed memory allocation, which allows remote attackers to cause a denial of service (NULL Pointer Dereference in DistortImage in MagickCore/distort.c, and application crash) via unspecified vectors.

Vendors
imagemagick
Products
imagemagick
Weakness
CWE-476
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.