CVE-2012-0247
ImageMagick 6.7.5-7 and earlier allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted offset and count values in the ResolutionUnit tag in the EXIF IFD0 of an image.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (3.82%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
ImageMagick 6.7.5-7 and earlier allows remote attackers to cause a denial of service (memory corruption) and possibly execute arbitrary code via crafted offset and count values in the ResolutionUnit tag in the EXIF IFD0 of an image.
- CVSS 3.1
- 8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- EPSS
- 3.82% probability · 89th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-20
- Affected
- imagemagick/imagemagick · debian/debian linux · canonical/ubuntu linux · redhat/storage · redhat/enterprise linux desktop · redhat/enterprise linux eus · redhat/enterprise linux server · redhat/enterprise linux server aus · redhat/enterprise linux server eus · redhat/enterprise linux workstation
- Source
- cret@cert.org
References
- http://rhn.redhat.com/errata/RHSA-2012-0544.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2012-0545.htmlThird Party Advisory
- http://secunia.com/advisories/47926Broken Link
- http://secunia.com/advisories/48247Broken Link
- http://secunia.com/advisories/48259Broken Link
- http://secunia.com/advisories/49043Broken Link
- http://secunia.com/advisories/49063Broken Link
- http://secunia.com/advisories/49068Broken Link
- http://ubuntu.com/usn/usn-1435-1Third Party Advisory
- http://www.cert.fi/en/reports/2012/vulnerability595210.htmlBroken Link
- http://www.debian.org/security/2012/dsa-2427Third Party Advisory
- http://www.gentoo.org/security/en/glsa/glsa-201203-09.xmlThird Party Advisory
- http://www.imagemagick.org/discourse-server/viewtopic.php?f=4&t=20286Issue Tracking, Patch, Vendor Advisory
- http://www.osvdb.org/79003Broken Link
- http://www.securitytracker.com/id?1027032Third Party Advisory, VDB Entry
- http://rhn.redhat.com/errata/RHSA-2012-0544.htmlThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2012-0545.htmlThird Party Advisory
- http://secunia.com/advisories/47926Broken Link
- http://secunia.com/advisories/48247Broken Link
- http://secunia.com/advisories/48259Broken Link
- http://secunia.com/advisories/49043Broken Link
- http://secunia.com/advisories/49063Broken Link
- http://secunia.com/advisories/49068Broken Link
- http://ubuntu.com/usn/usn-1435-1Third Party Advisory
- http://www.cert.fi/en/reports/2012/vulnerability595210.htmlBroken Link
- http://www.debian.org/security/2012/dsa-2427Third Party Advisory
- http://www.gentoo.org/security/en/glsa/glsa-201203-09.xmlThird Party Advisory
- http://www.imagemagick.org/discourse-server/viewtopic.php?f=4&t=20286Issue Tracking, Patch, Vendor Advisory
- http://www.osvdb.org/79003Broken Link
- http://www.securitytracker.com/id?1027032Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.