Security Advisory

CVE-2017-13132

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-08-23 03:00:00
Last updated 2024-08-05 18:58:12
Assigner mitre
State PUBLISHED

Description

In ImageMagick 7.0.6-8, the WritePDFImage function in coders/pdf.c operates on an incorrect data structure in the "dump uncompressed PseudoColor packets" step, which allows attackers to cause a denial of service (assertion failure in WriteBlobStream in MagickCore/blob.c) via a crafted file.