VYPR
Medium severity6.5NVD Advisory· Published Aug 23, 2017· Updated May 13, 2026

CVE-2017-13133

CVE-2017-13133

Description

In ImageMagick 7.0.6-8, the load_level function in coders/xcf.c lacks offset validation, which allows attackers to cause a denial of service (load_tile memory exhaustion) via a crafted file.

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.