CVE-2017-17934: Medium severity imagemagick vulnerability
ImageMagick 7.0.7-17 Q16 x8664 has memory leaks in coders/msl.c, related to MSLPopImage and ProcessMSLScript, and associated with mishandling of MSLPushImage calls.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2017-17934?
CVE-2017-17934 is a vulnerability in ImageMagick 7.0.7-17 Q16 x86_64 that causes memory leaks in coders/msl.c.
How severe is CVE-2017-17934?
CVE-2017-17934 has a severity rating of 6.5, which is considered medium.
What software versions are affected by CVE-2017-17934?
CVE-2017-17934 affects ImageMagick 7.0.7-17 and earlier versions.
What is the remedy for CVE-2017-17934 on Ubuntu?
For Ubuntu, you can apply the following remedies: imagemagick 8:6.9.7.4+dfsg-16ubuntu2.2, imagemagick 8:6.9.7.4+dfsg-16ubuntu6.2, imagemagick 8:6.7.7.10-6ubuntu3.11, imagemagick 8:6.9.9.34+dfsg-3, and imagemagick 8:6.8.9.9-7ubuntu5.11.
Is Debian affected by CVE-2017-17934?
Yes, Debian is affected by CVE-2017-17934. The specific remedy versions for Debian can be found in the reference link.