In ImageMagick before 6.9.7-10, there is a crash (rather than a "width or height exceeds limit" error report) if the image dimensions are too large, as demonstrated by use of the mpc coder.
References
Link | Resource |
---|---|
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=869728 | Issue Tracking Third Party Advisory |
https://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=31438 | Issue Tracking Patch Third Party Advisory |
https://www.debian.org/security/2017/dsa-4019 | |
https://security.gentoo.org/glsa/201711-07 | |
https://www.debian.org/security/2017/dsa-4040 | |
https://usn.ubuntu.com/3681-1/ |
Configurations
Information
Published : 2017-08-22 23:29
Updated : 2018-06-13 18:29
NVD link : CVE-2017-13144
Mitre link : CVE-2017-13144
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
imagemagick
- imagemagick