Beveiligingsadvies

CVE-2017-16546

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2017-11-05 22:00:00
Laatst bijgewerkt 2024-08-05 20:27:03
Toegewezen door mitre
CVSS-score geen score
Status PUBLISHED

Beschrijving

The ReadWPGImage function in coders/wpg.c in ImageMagick 7.0.7-9 does not properly validate the colormap index in a WPG palette, which allows remote attackers to cause a denial of service (use of uninitialized data or invalid memory allocation) or possibly have unspecified other impact via a malformed WPG file.