CVE-2017-9098
HIGHImageMagick <7.0.5-2, GraphicsMagick <1.3.24 - Info Disclosure
Title source: llmDescription
ImageMagick before 7.0.5-2 and GraphicsMagick before 1.3.24 use uninitialized memory in the RLE decoder, allowing an attacker to leak sensitive information from process memory space, as demonstrated by remote attacks against ImageMagick code in a long-running server process that converts image data on behalf of multiple users. This is caused by a missing initialization step in the ReadRLEImage function in coders/rle.c.
References (6)
Core 6
Core References
Patch, Third Party Advisory x_refsource_misc
http://hg.code.sf.net/p/graphicsmagick/code/diff/0a5b75e019b6/coders/rle.c
Patch, Third Party Advisory x_refsource_misc
https://github.com/ImageMagick/ImageMagick/commit/1c358ffe0049f768dd49a8a889c1cbf99ac9849b
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/98593
Mailing List, Third Party Advisory mailing-list
x_refsource_mlist
https://lists.debian.org/debian-lts-announce/2018/08/msg00002.html
Exploit, Technical Description, Third Party Advisory x_refsource_misc
https://scarybeastsecurity.blogspot.com/2017/05/bleed-continues-18-byte-file-14k-bounty.html
Third Party Advisory vendor-advisory
x_refsource_debian
http://www.debian.org/security/2017/dsa-3863
Scores
CVSS v3
7.5
EPSS
0.0146
EPSS Percentile
80.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-908
Status
published
Products (4)
debian/debian_linux
8.0
debian/debian_linux
9.0
graphicsmagick/graphicsmagick
< 1.3.24
imagemagick/imagemagick
< 6.9.8-1
Published
May 19, 2017
Tracked Since
Feb 18, 2026