First published: Tue Dec 13 2016(Updated: )
Buffer overflow in MagickCore/enhance.c in ImageMagick before 7.0.2-7 allows remote attackers to have unspecified impact via vectors related to pixel cache morphology.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ImageMagick ImageMagick | >=7.0.0-0<7.0.2-7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-6520 is classified as a high severity vulnerability due to its potential for remote exploitation.
To fix CVE-2016-6520, upgrade ImageMagick to version 7.0.2-7 or later.
CVE-2016-6520 can be exploited by remote attackers to cause a buffer overflow that may lead to arbitrary code execution.
Versions of ImageMagick prior to 7.0.2-7 are affected by CVE-2016-6520.
CVE-2016-6520 involves the MagickCore/enhance.c component of ImageMagick.