Heap-based buffer over-read vulnerability in ImageMagick before 7.0.7-12: Magick_png_read_raw_profile in coders/png.c via crafted file

Heap-based buffer over-read vulnerability in ImageMagick before 7.0.7-12: Magick_png_read_raw_profile in coders/png.c via crafted file

CVE-2017-17504 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

ImageMagick before 7.0.7-12 has a coders/png.c Magick_png_read_raw_profile heap-based buffer over-read via a crafted file, related to ReadOneMNGImage.

Learn more about our Web Application Penetration Testing UK.