First published: Sat Jul 29 2017(Updated: )
In ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1, the ReadOneMNGIm ...
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/imagemagick | <=8:6.8.9.9-5+deb8u8<=8:6.7.7.10-5+deb9u1<=8:6.7.7.10-5+deb7u14<=8:6.9.7.4+dfsg-13<=8:6.8.9.9-5+deb8u9 | |
ImageMagick | <=6.9.9-0 | |
ImageMagick | =7.0.0-0 | |
ImageMagick | =7.0.1-0 | |
ImageMagick | =7.0.1-1 | |
ImageMagick | =7.0.1-2 | |
ImageMagick | =7.0.1-3 | |
ImageMagick | =7.0.1-4 | |
ImageMagick | =7.0.1-5 | |
ImageMagick | =7.0.1-6 | |
ImageMagick | =7.0.1-7 | |
ImageMagick | =7.0.1-8 | |
ImageMagick | =7.0.1-9 | |
ImageMagick | =7.0.1-10 | |
ImageMagick | =7.0.2-0 | |
ImageMagick | =7.0.2-1 | |
ImageMagick | =7.0.2-2 | |
ImageMagick | =7.0.2-3 | |
ImageMagick | =7.0.2-4 | |
ImageMagick | =7.0.2-5 | |
ImageMagick | =7.0.2-6 | |
ImageMagick | =7.0.2-7 | |
ImageMagick | =7.0.2-8 | |
ImageMagick | =7.0.2-9 | |
ImageMagick | =7.0.2-10 | |
ImageMagick | =7.0.3-0 | |
ImageMagick | =7.0.3-1 | |
ImageMagick | =7.0.3-2 | |
ImageMagick | =7.0.3-3 | |
ImageMagick | =7.0.3-4 | |
ImageMagick | =7.0.3-5 | |
ImageMagick | =7.0.3-6 | |
ImageMagick | =7.0.3-7 | |
ImageMagick | =7.0.3-8 | |
ImageMagick | =7.0.3-9 | |
ImageMagick | =7.0.3-10 | |
ImageMagick | =7.0.4-0 | |
ImageMagick | =7.0.4-1 | |
ImageMagick | =7.0.4-2 | |
ImageMagick | =7.0.4-3 | |
ImageMagick | =7.0.4-4 | |
ImageMagick | =7.0.4-5 | |
ImageMagick | =7.0.4-6 | |
ImageMagick | =7.0.4-7 | |
ImageMagick | =7.0.4-8 | |
ImageMagick | =7.0.4-9 | |
ImageMagick | =7.0.4-10 | |
ImageMagick | =7.0.5-0 | |
ImageMagick | =7.0.5-1 | |
ImageMagick | =7.0.5-2 | |
ImageMagick | =7.0.5-3 | |
ImageMagick | =7.0.5-4 | |
ImageMagick | =7.0.5-5 | |
ImageMagick | =7.0.5-6 | |
ImageMagick | =7.0.5-7 | |
ImageMagick | =7.0.5-8 | |
ImageMagick | =7.0.5-10 | |
ImageMagick | =7.0.6-0 | |
Debian Linux | =8.0 | |
Debian Linux | =9.0 | |
Ubuntu | =16.04 | |
Ubuntu | =16.04 | |
Ubuntu | =17.10 | |
Ubuntu | =18.04 | |
debian/imagemagick | 8:6.9.11.60+dfsg-1.3+deb11u4 8:6.9.11.60+dfsg-1.3+deb11u5 8:6.9.11.60+dfsg-1.6+deb12u2 8:6.9.11.60+dfsg-1.6+deb12u1 8:7.1.1.43+dfsg1-1 8:7.1.1.47+dfsg1-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-13139 has a high severity rating due to its potential for out-of-bounds read vulnerabilities.
To fix CVE-2017-13139, update ImageMagick to version 7.0.6-1 or later.
CVE-2017-13139 affects ImageMagick versions before 6.9.9-0 and 7.x before 7.0.6-1.
CVE-2017-13139 may be exploitable depending on how ImageMagick is used and what types of image files are processed.
Systems running vulnerable versions of ImageMagick on Debian or Ubuntu should be updated to mitigate CVE-2017-13139.