CVE-2017-11478 PUBLISHED

The ReadOneDJVUImage function in coders/djvu.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed DJVU image.

EPSS 0.53% · 67.0th percentile

Risk Scores

EPSS Score
0.53%
67.0th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSimagemagick8:6.8.9.9-7ubuntu5.7, 8:6.8.9.9-6build1, 8:6.8.9.9-7
Ubuntu:14.04:LTSimagemagick8:6.7.7.10-5ubuntu3, 8:6.7.7.10-5ubuntu4, 8:6.7.7.10-6ubuntu1

Timeline

References

Open in Interactive Console →