Denial of Service Vulnerability in ImageMagick 7.0.7-28 via Crafted MNG File

Denial of Service Vulnerability in ImageMagick 7.0.7-28 via Crafted MNG File

CVE-2018-10177 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:N/A:P

In ImageMagick 7.0.7-28, there is an infinite loop in the ReadOneMNGImage function of the coders/png.c file. Remote attackers could leverage this vulnerability to cause a denial of service via a crafted mng file.

Learn more about our Web Application Penetration Testing UK.