All errata/sisyphus/ALT-PU-2017-2850-1
ALT-PU-2017-2850-1

Package update ImageMagick in branch sisyphus

Version6.9.9.28-alt1
Published2017-12-28
Max severityCRITICAL
Severity:

Closed issues (2)

CVE-2017-17504
MEDIUM6.5

ImageMagick before 7.0.7-12 has a coders/png.c Magick_png_read_raw_profile heap-based buffer over-read via a crafted file, related to ReadOneMNGImage.

Published: 2017-12-11Modified: 2025-04-20
CVSS 2.0MEDIUM 4.3
CVSS:2.0/AV:N/AC:M/Au:N/C:N/I:N/A:P
CVSS 3.xMEDIUM 6.5
CVSS:3.x/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H