CVE-2017-13146: High severity imagemagick vulnerability
In ImageMagick before 6.9.8-5 and 7.x before 7.0.5-6, there is a memory leak in the ReadMATImage function in coders/mat.c.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-13146?
CVE-2017-13146 is classified as having a moderate severity level due to the memory leak vulnerability in ImageMagick.
How do I fix CVE-2017-13146?
To fix CVE-2017-13146, you should upgrade your ImageMagick installation to version 6.9.8-5 or later for the 6.x series or version 7.0.5-6 or later for the 7.x series.
What types of software are affected by CVE-2017-13146?
CVE-2017-13146 affects ImageMagick versions prior to 6.9.8-5 and all versions prior to 7.0.5-6.
Is CVE-2017-13146 exploitable remotely?
CVE-2017-13146 is not typically considered a remote exploit as it requires processing specially crafted images.
What are the potential impacts of CVE-2017-13146?
The potential impacts of CVE-2017-13146 include increased memory consumption which could lead to denial of service in systems running ImageMagick.