CVE-2014-9841: Critical severity openSUSE openSUSE vulnerability
Fixed throwing of exceptions in psd handling.
CVE assignment:
http://seclists.org/oss-sec/2016/q2/459
Upstream patch:
https://anonscm.debian.org/cgit/collab-maint/imagemagick.git/commit/?h=debian-patches/6.8.9.9-4-for-upstream&id=f9ef11671c41da4cf973d0d880af1cdfbd127860
Other sources
The ReadPSDLayers function in coders/psd.c in ImageMagick 6.8.9.9 allows remote attackers to have unspecified impact via unknown vectors, related to "throwing of exceptions."
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-9841?
CVE-2014-9841 has been classified as a medium severity vulnerability.
How do I fix CVE-2014-9841?
To fix CVE-2014-9841, update to a patched version of ImageMagick or your affected Linux distribution.
Which software is affected by CVE-2014-9841?
CVE-2014-9841 affects various versions of ImageMagick, openSUSE, and Ubuntu operating systems.
What type of vulnerability is CVE-2014-9841?
CVE-2014-9841 is an exception handling vulnerability in PSD file handling in ImageMagick.
When was CVE-2014-9841 disclosed?
CVE-2014-9841 was disclosed in 2016 and is addressed by an upstream patch.