Heap-based Buffer Over-read Vulnerability in ImageMagick 7.0.7-37 Q16's SetGrayscaleImage Function

Heap-based Buffer Over-read Vulnerability in ImageMagick 7.0.7-37 Q16's SetGrayscaleImage Function

CVE-2018-11625 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

In ImageMagick 7.0.7-37 Q16, SetGrayscaleImage in the quantize.c file allows attackers to cause a heap-based buffer over-read via a crafted file.

Learn more about our Web Application Penetration Testing UK.