CVE-2017-11533: Medium severity imagemagick vulnerability
Last updated 24 July 2024
Other sources
When ImageMagick 7.0.6-1 processes a crafted file in convert, it can l ...
— Debian
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2017-11533?
CVE-2017-11533 is a vulnerability in ImageMagick 7.0.6-1 that can lead to a heap-based buffer over-read in the WriteUILImage() function in coders/uil.c when processing a crafted file in convert.
What is the severity of CVE-2017-11533?
The severity of CVE-2017-11533 is medium, with a severity value of 6.5.
How does CVE-2017-11533 affect ImageMagick?
CVE-2017-11533 affects ImageMagick 7.0.6-1.
How can I fix CVE-2017-11533?
To fix CVE-2017-11533, update ImageMagick to version 8:6.9.7.4+dfsg-13 or 8:6.9.7.4+dfsg-11+deb9u2, depending on the source of your package (debian or ubuntu).
Where can I find more information about CVE-2017-11533?
You can find more information about CVE-2017-11533 on the following websites: [CVE Mitre](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-11533), [Ubuntu Security Notices](https://ubuntu.com/security/notices/USN-3681-1), [NVD NIST](https://nvd.nist.gov/vuln/detail/CVE-2017-11533).