CVE-2018-8960 PUBLISHED

The ReadTIFFImage function in coders/tiff.c in ImageMagick 7.0.7-26 Q16 does not properly restrict memory allocation, leading to a heap-based buffer over-read.

EPSS 0.38% · 59.0th percentile

Risk Scores

EPSS Score
0.38%
59.0th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSimagemagick8:6.8.9.9-7, 8:6.8.9.9-7ubuntu5.9, 8:6.8.9.9-7ubuntu5.8
Ubuntu:18.04:LTSimagemagick8:6.9.7.4+dfsg-16ubuntu6, 0, 8:6.9.7.4+dfsg-16ubuntu2
Ubuntu:14.04:LTSimagemagick8:6.7.7.10-6ubuntu3.4, 8:6.7.7.10-6ubuntu3.3, 8:6.7.7.10-6ubuntu3.2

Timeline

References

Open in Interactive Console →