Security Advisory

CVE-2017-18272

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-05-18 19:00:00
Last updated 2024-09-16 16:22:46
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

In ImageMagick 7.0.7-16 Q16 x86_64 2017-12-25, there is a use-after-free in ReadOneMNGImage in coders/png.c, which allows attackers to cause a denial of service via a crafted MNG image file that is mishandled in an MngInfoDiscardObject call.