CVE-2017-8830: Medium severity imagemagick vulnerability
Published May 8, 2017
·Updated
In ImageMagick 7.0.5-6, the ReadBMPImage function in bmp.c:1379 allows attackers to cause a denial of service (memory leak) via a crafted file.
Affected Software
1 affected component
ImageMagick=7.0.5-6
Remediation
Patch Available
Event History
May 8, 2017
CVE Published
via MITRE·06:10 AM
Data Sourced
via MITRE·06:10 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-8830?
CVE-2017-8830 is classified as a moderate severity vulnerability due to its potential to cause denial of service.
2
How do I fix CVE-2017-8830?
To fix CVE-2017-8830, upgrade ImageMagick to version 7.0.5-7 or later.
3
What is the impact of exploiting CVE-2017-8830?
Exploiting CVE-2017-8830 can lead to a denial of service condition through a memory leak.
4
Which versions of ImageMagick are affected by CVE-2017-8830?
CVE-2017-8830 affects ImageMagick version 7.0.5-6.
5
Is CVE-2017-8830 related to file handling?
Yes, CVE-2017-8830 is related to vulnerabilities in the ReadBMPImage function for handling crafted BMP files.