Critical severity9.8NVD Advisory· Published Dec 13, 2016· Updated May 6, 2026
CVE-2016-5841
CVE-2016-5841
Description
Integer overflow in MagickCore/profile.c in ImageMagick before 7.0.2-1 allows remote attackers to cause a denial of service (segmentation fault) or possibly execute arbitrary code via vectors involving the offset variable.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.openwall.com/lists/oss-security/2016/06/25/3nvdPatchThird Party Advisory
- github.com/ImageMagick/ImageMagick/commits/7.0.2-1nvdPatchVendor Advisory
- www.openwall.com/lists/oss-security/2016/06/23/1nvdExploitPatchThird Party Advisory
- www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.htmlnvdThird Party Advisory
- www.securityfocus.com/bid/91394nvdThird Party AdvisoryVDB Entry
- github.com/ImageMagick/ImageMagick/commit/d8ab7f046587f2e9f734b687ba7e6e10147c294bnvdVendor Advisory
News mentions
0No linked articles in our index yet.