REDHAT-BUG-1572044: Low severity imagemagick vulnerability
Published Apr 26, 2018
·Updated
ImageMagick through version 7.0.7-28 is vulnerable to an infinite loop in coders/png.c:ReadOneMNGImage(). An attacker could exploit this to cause a denial of service via crafted MNG file.
References: https://github.com/ImageMagick/ImageMagick/issues/1095
Affected Software
1 affected component
ImageMagick<7.0.7-28
Event History
Apr 26, 2018
Data Sourced
via Red Hat·05:10 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-1572044?
The severity of REDHAT-BUG-1572044 is categorized as a denial of service vulnerability.
2
How can I fix REDHAT-BUG-1572044?
To fix REDHAT-BUG-1572044, upgrade ImageMagick to a version later than 7.0.7-28.
3
What type of attacks does REDHAT-BUG-1572044 enable?
REDHAT-BUG-1572044 enables attackers to exploit crafted MNG files to cause infinite loops leading to denial of service.
4
Which versions of ImageMagick are affected by REDHAT-BUG-1572044?
ImageMagick versions up to 7.0.7-28 are affected by REDHAT-BUG-1572044.
5
Where can I find more information about REDHAT-BUG-1572044?
More information about REDHAT-BUG-1572044 can be found by checking official security advisory channels for ImageMagick.