First published: Mon Feb 06 2017(Updated: )
Heap-based buffer overflow in the EscapeParenthesis function in GraphicsMagick before 1.3.25 allows remote attackers to have unspecified impact via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
ImageMagick | <=1.3.24 | |
Debian | =8.0 | |
SUSE Linux | =42.1 | |
SUSE Linux | =13.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-7447 is categorized as a high severity vulnerability due to its potential for remote exploitation through a heap-based buffer overflow.
To fix CVE-2016-7447, upgrade GraphicsMagick to version 1.3.25 or later, or apply the relevant patches if available.
CVE-2016-7447 affects GraphicsMagick versions prior to 1.3.25.
Yes, Debian Linux 8.0 is vulnerable to CVE-2016-7447 if using an affected version of GraphicsMagick.
Yes, CVE-2016-7447 can be exploited by remote attackers through unknown vectors, allowing for unspecified impacts.