CVE-2017-12983 PUBLISHED

Heap-based buffer overflow in the ReadSFWImage function in coders/sfw.c in ImageMagick 7.0.6-8 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted file.

EPSS 0.48% · 65.1th percentile

Risk Scores

EPSS Score
0.48%
65.1th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSimagemagick8:6.8.9.9-7, 8:6.8.9.9-7ubuntu5.9, 8:6.8.9.9-7ubuntu5.8
Ubuntu:18.04:LTSimagemagick8:6.9.7.4+dfsg-16ubuntu6, 0, 8:6.9.7.4+dfsg-16ubuntu2
Ubuntu:14.04:LTSimagemagick8:6.7.7.10-6ubuntu3.4, 8:6.7.7.10-6ubuntu3.3, 8:6.7.7.10-6ubuntu3.2

Timeline

References

Open in Interactive Console →