CVE-2023-39978: Low severity imagemagick vulnerability
Published Aug 8, 2023
·Updated
ImageMagick before 6.9.12-91 allows attackers to cause a denial of service (memory consumption) in Magick::Draw.
Affected Software
2 affected components
ImageMagick<6.9.12-91
fedoraproject fedora=37
Remediation
Event History
Aug 8, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this ImageMagick vulnerability?
The vulnerability ID for this ImageMagick vulnerability is CVE-2023-39978.
2
What is the severity level of CVE-2023-39978?
The severity level of CVE-2023-39978 is low (3.3).
3
What is the affected software for CVE-2023-39978?
The affected software for CVE-2023-39978 is ImageMagick before version 6.9.12-91.
4
What is the impact of the CVE-2023-39978 vulnerability?
The impact of the CVE-2023-39978 vulnerability is a denial of service (memory consumption) in Magick::Draw.
5
How can I mitigate the CVE-2023-39978 vulnerability?
To mitigate the CVE-2023-39978 vulnerability, update ImageMagick to version 6.9.12-91 or higher.