ImageMagick DoS Vulnerability (CVE-2017-1000445)
ImageMagick DoS Vulnerability (CVE-2017-1000445)
Release date:
Updated on:
Affected Systems:
ImageMagick ImageMagick <= 7.0.7-1
Description:
Bugtraq id: 102368
CVE (CAN) ID: CVE-2017-1000445
ImageMagick is an open-source image viewing and editing tool on Unix/Linux platforms.
ImageMagick 7.0.7-1 and earlier versions have the NULL pointer indirect reference vulnerability in the MagickCore component implementation. After successful exploitation, attackers can cause a denial of service.
<* Source: viennadd
*>
Suggestion:
Vendor patch:
ImageMagick
-----------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://github.com/ImageMagick/ImageMagick/issues/775
Http://www.imagemagick.org/
Recommended reading:
Use ImageMagick to draw a three-color schematic diagram
In Linux, PHP supports ImageMagick and MagicWandForPHP.
Image Magic with ImageMagick in Linux
Cross-compile ImageMagick in Ubuntu 16.04
Installation of ImageMagick and MagicWand For PHP in Linux
Install ImageMagick and JMagick in Linux
The ImageMagick compiled on Linux system is migrated to another machine.
For details about ImageMagick, click here
ImageMagick: click here