PT-2017-2781 · Imagemagick+1 · Imagemagick+1

Xcainiaoo

·

Published

2017-08-08

·

Updated

2020-09-08

·

CVE-2017-12875

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions ImageMagick version 7.0.6-6
Description The issue is related to the WritePixelCachePixels function and is caused by resource management errors. It allows remote attackers to cause a denial of service by consuming CPU resources via a crafted file.
Recommendations For ImageMagick version 7.0.6-6, consider disabling the WritePixelCachePixels function as a temporary workaround until a patch is available.

Exploit

Fix

DoS

Allocation of Resources Without Limits

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-02040
CVE-2017-12875
DLA-1131-1
DLA-1785-1
DLA-2366-1
USN-3681-1

Affected Products

Imagemagick
Ubuntu