CVE-2016-6823 PUBLISHED

Integer overflow in the BMP coder in ImageMagick before 7.0.2-10 allows remote attackers to cause a denial of service (crash) via crafted height and width values, which triggers an out-of-bounds write.

EPSS 0.94% · 76.0th percentile

Risk Scores

EPSS Score
0.94%
76.0th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSimagemagick8:6.8.9.9-7ubuntu5.1, 8:6.8.9.9-6build1, 8:6.8.9.9-7
Ubuntu:14.04:LTSimagemagick8:6.7.7.10-5ubuntu3, 8:6.7.7.10-5ubuntu4, 8:6.7.7.10-6ubuntu1

Timeline

References

Open in Interactive Console →