Out of Bounds Write Vulnerability in ImageMagick by ImageMagick Studio LLC
CVE-2018-12600

8.8HIGH

Key Information:

Vendor
Debian
Vendor
CVE Published:
20 June 2018

Summary

The out of bounds write vulnerability in ImageMagick version 7.0.8-3 Q16 affects the ReadDIBImage and WriteDIBImage functions, allowing attackers to exploit specifically crafted files. This vulnerability could lead to unintended memory modifications, resulting in application instability or potentially enabling further attacks. It is crucial for users of ImageMagick to apply the security updates as recommended by the vendor to mitigate these risks.

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.