Medium severity5.5NVD Advisory· Published Feb 27, 2017· Updated May 13, 2026
CVE-2015-8900
CVE-2015-8900
Description
The ReadHDRImage function in coders/hdr.c in ImageMagick 6.x and 7.x allows remote attackers to cause a denial of service (infinite loop) via a crafted HDR file.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- www.openwall.com/lists/oss-security/2015/02/26/13nvdMailing ListPatchThird Party Advisory
- www.openwall.com/lists/oss-security/2016/06/06/2nvdMailing ListPatchThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatch
- github.com/ImageMagick/ImageMagick/commit/97aa7d7cfd2027f6ba7ce42caf8b798541b9cdc6nvdIssue TrackingPatchThird Party Advisory
- www.imagemagick.org/discourse-server/viewtopic.phpnvdExploitPatchVendor Advisory
- trac.imagemagick.org/changeset/17845nvdBroken Link
- trac.imagemagick.org/changeset/17846nvdBroken Link
News mentions
0No linked articles in our index yet.