CVE-2017-12642: High severity ImageMagick vulnerability
Published Aug 7, 2017
·Updated
ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadMPCImage in coders\mpc.c.
Affected Software
1 affected component
ImageMagick=7.0.6-1
Remediation
Patch Available
Event History
Aug 7, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-12642?
CVE-2017-12642 is classified with a medium severity due to its memory leak vulnerability.
2
How do I fix CVE-2017-12642?
To fix CVE-2017-12642, upgrade ImageMagick to a version later than 7.0.6-1 that has patched the vulnerability.
3
What are the potential impacts of CVE-2017-12642?
The potential impacts of CVE-2017-12642 include increased memory usage leading to denial of service conditions.
4
Which version of ImageMagick is affected by CVE-2017-12642?
CVE-2017-12642 affects ImageMagick version 7.0.6-1.
5
Is CVE-2017-12642 relevant for production environments?
Yes, CVE-2017-12642 is relevant for production environments using the vulnerable version of ImageMagick, especially in resource-constrained situations.