ImageMagick
cpe:2.3:a:imagemagick:imagemagick:*:*:*:*:*:*:*
- < 7.1.2-16
- < 6.9.13-41
A stack buffer overflow vulnerability has been identified in ImageMagick versions prior to 7.1.2-16 and 6.9.13-41. The issue arises in the MagnifyImage function, which uses a fixed-size stack buffer. When processing a specific image, it is possible to overflow this buffer, leading to stack corruption.
Exploitation of this vulnerability allows for stack corruption, which could potentially be leveraged to execute arbitrary code.
Users can upgrade to ImageMagick versions 7.1.2-16 or 6.9.13-41 to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.