CVE-2017-12641: High severity ImageMagick vulnerability
Published Aug 7, 2017
·Updated
ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadOneJNGImage in coders\png.c.
Affected Software
1 affected component
ImageMagick=7.0.6-1
Remediation
Patch Available
Event History
Aug 7, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-12641?
CVE-2017-12641 is classified as a memory leak vulnerability in ImageMagick.
2
How do I fix CVE-2017-12641?
To fix CVE-2017-12641, update ImageMagick to a version later than 7.0.6-1.
3
What software versions are affected by CVE-2017-12641?
CVE-2017-12641 affects ImageMagick version 7.0.6-1.
4
What component is vulnerable in CVE-2017-12641?
The vulnerability in CVE-2017-12641 is found in the ReadOneJNGImage function within coders/png.c.
5
Is CVE-2017-12641 exploitable in the wild?
There is no current evidence to suggest that CVE-2017-12641 is being actively exploited in the wild.