First published: Wed Mar 22 2017(Updated: )
Heap overflow in ImageMagick 6.8.9-9 via a crafted psd file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ImageMagick | =6.8.9-9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-9833 has been assigned a high severity rating due to the potential for remote code execution resulting from the heap overflow.
To fix CVE-2014-9833, you should upgrade ImageMagick to a version later than 6.8.9-9 that includes the vulnerability patch.
Exploiting CVE-2014-9833 allows an attacker to execute arbitrary code on the affected system through a crafted PSD file.
ImageMagick version 6.8.9-9 is specifically affected by CVE-2014-9833.
You can detect vulnerability to CVE-2014-9833 by checking the version of ImageMagick installed on your system and comparing it to the affected version.